Miggo Logo

CVE-2022-28889: Apache Druid before 0.23.0 vulnerable to clickjacking

4.3

CVSS Score
3.1

Basic Information

EPSS Score
0.7102%
Published
7/8/2022
Updated
1/27/2023
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
org.apache.druid:druidmaven< 0.23.00.23.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

In *p**** *rui* *.**.* *n* **rli*r, t** s*rv*r *i* not s*t *ppropri*t* *****rs to pr*v*nt *li*kj**kin*. *rui* *.**.* *n* l*t*r pr*v*nt *li*kj**kin* usin* t** *ont*nt-S**urity-Poli*y *****r.

Reasoning

No *n*lysis *v*il**l*