VDB

CVE-2020-13929

CVE-2020-13929 PUBLISHED CVSS 5 MEDIUM

Authentication bypass vulnerability in Apache Zeppelin allows an attacker to bypass Zeppelin authentication mechanism to act as another user. This issue affects Apache Zeppelin Apache Zeppelin version 0.9.0 and prior versions.

EPSS 0.12% · 31.1th percentile

Risk Scores

CVSS 2.0
5
EPSS Score
0.12%
31.1th percentile

Affected Products

VendorProductVersions
Apache Software FoundationApache ZeppelinApache Zeppelin
Mavenorg.apache.zeppelin:zeppelin0
apachezeppelin0

Timeline

  • Sep 2, 2021 CVE Published
  • Sep 3, 2021 EPSS Score
  • Sep 11, 2021 EPSS Score
  • Oct 5, 2021 EPSS Score
  • Oct 11, 2021 EPSS Score
  • Oct 31, 2021 EPSS Score
  • Nov 30, 2021 CVE Updated
  • Dec 28, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 24, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 23, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›