CVE-2019-12397

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
08/08/2019
Last modified:
07/11/2023

Description

Policy import functionality in Apache Ranger 0.7.0 to 1.2.0 is vulnerable to a cross-site scripting issue. Upgrade to 2.0.0 or later version of Apache Ranger with the fix.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apache:ranger:*:*:*:*:*:*:*:* 0.7.0 (including) 1.2.0 (including)