CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It affects Apache, Java. Exploitation may require the attacker to be authenticated.
CVE
CVE-2024-29831
Severity
HIGH
CVSS
8.8
EPSS
1.18%
Apache Java
Original NVD Description
Improper Input Validation vulnerability in Apache DolphinScheduler. An authenticated user can cause arbitrary, unsandboxed javascript to be executed on the server. If you are using the switch task plugin, please upgrade to version 3.2.2.
Related CVEs
Other vulnerabilities affecting the same vendor(s)