Skip to main content

Vendor/product archive

apache / knox CVEs

Beta · best-effort

2 CVEs tagged to apache / knox0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-42357

Published Jan 17, 2022

When using Apache Knox SSO prior to 1.6.1, a request could be crafted to redirect a user to a malicious page due to improper URL parsing. A request that included a specially craft…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-5646

Published May 26, 2017

For versions of Apache Knox from 0.2.0 to 0.11.0 - an authenticated user may use a specially crafted URL to impersonate another user while accessing WebHDFS through Apache Knox. T…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1