CVE Published: 09/08/2024 |
CVE Updated: 12/08/2024 |
CVE Year: 2024 Source: apache |
Vendor: Apache Software Foundation |
Product: Apache DolphinScheduler Status : PUBLISHED
CVE-2024-29831 Description
Improper Input Validation vulnerability in Apache DolphinScheduler. An authenticated user can cause arbitrary, unsandboxed javascript to be executed on the server. If you are using the switch task plugin, please upgrade to version 3.2.2.