Re: CVE-2020-13929: Apache Zeppelin: Notebook permissions bypass

2021-09-28 Thread Michiel Haisma
Hi Jeff, others, Can you please provide additional information regarding this vulnerability. Please include the following information: * Technical description of vulnerability, how users determine whether they are impacted. Maybe this is satisfied by one of the following items: * Relevant iss

Re: CVE-2021-27578: Apache Zeppelin: Cross Site Scripting in markdown interpreter

2021-09-28 Thread Michiel Haisma
Hi Jeff, others, Can you please provide additional information regarding this vulnerability. Please include the following information: * Technical description of vulnerability, how users determine whether they are impacted. Maybe this is satisfied by one of the following items: * Relevant iss

Re: CVE-2019-10095: Apache Zeppelin: bash command injection in spark interpreter

2021-09-28 Thread Michiel Haisma
Hi Jeff, others, Can you please provide additional information regarding this vulnerability. Please include the following information: * Technical description of vulnerability, how users determine whether they are impacted. Maybe this is satisfied by one of the following items: * Relevant iss