CVE-2024-29831
EUVD-2024-261412.08.2024, 13:38
Improper Input Validation vulnerability in Apache DolphinScheduler. An authenticated user can cause arbitrary, unsandboxed javascript to be executed on the server. If you are using the switch task plugin, please upgrade to version 3.2.2.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apache | dolphinscheduler | 𝑥 < 3.2.2 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| apache_software_foundation | apache_dolphinscheduler | 𝑥 ≤ 3.2.1 | ADP |
Common Weakness Enumeration