Vulnerability Description
A vulnerability in the HTML pages of Apache Jena Fuseki allows an attacker to execute arbitrary javascript on certain page views. This issue affects Apache Jena Fuseki from version 2.0.0 to version 4.0.0 (inclusive).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Jena Fuseki | >= 2.0.0, < 4.1.0 |
Related Weaknesses (CWE)
References
- https://lists.apache.org/thread.html/r684d8943d755a96fe90f8cd8df196737b6bde3f2b7Mailing ListVendor Advisory
- https://lists.apache.org/thread.html/r684d8943d755a96fe90f8cd8df196737b6bde3f2b7Mailing ListVendor Advisory
FAQ
What is CVE-2021-33192?
CVE-2021-33192 is a vulnerability with a CVSS score of 6.1 (MEDIUM). A vulnerability in the HTML pages of Apache Jena Fuseki allows an attacker to execute arbitrary javascript on certain page views. This issue affects Apache Jena Fuseki from version 2.0.0 to version 4....
How severe is CVE-2021-33192?
CVE-2021-33192 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-33192?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Jena Fuseki.