First published: Wed Dec 19 2018(Updated: )
Vulnerability allows a user of Apache Oozie 3.1.3-incubating to 5.0.0 to impersonate other users. The malicious user can construct an XML that results workflows running in other user's name.
Credit: security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Oozie | >=3.1.3<5.1.0 | |
Apache Oozie | =3.1.3-incubating |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.