CVE-2024-45478

Stored XSS vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0. Users are recommended to upgrade to version Apache Ranger 2.5.0, which fixes this issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:ranger:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-01-21 22:15

Updated : 2025-06-10 09:15


NVD link : CVE-2024-45478

Mitre link : CVE-2024-45478

CVE.ORG link : CVE-2024-45478


JSON object : View

Products Affected

apache

  • ranger
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')