Path traversal vulnerability in Apache Zeppelin. When FileSystemNotebookRepo is configured, an authenticated attacker with permission to rename a note, or access to folder operations, could supply tr…
Medium CVSS 6.5
Summary
Path traversal vulnerability in Apache Zeppelin. When FileSystemNotebookRepo is configured, an authenticated attacker with permission to rename a note, or access to folder operations, could supply traversal segments in note or folder paths. Zeppelin composed these values into filesystem paths using the server's filesystem or Hadoop identity without ensuring that the result remained under the configured notebook directory. This could allow notebook files or directories to be mo…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://github.com/apache/zeppelin/pull/5227 Issue Tracking
- https://github.com/apache/zeppelin/pull/5248 Issue Tracking
- https://lists.apache.org/thread/ps1f0symnyxzq8c2dc3244v051jcwp40 Mailing List
- http://www.openwall.com/lists/oss-security/2026/07/30/2 Mailing List
Timeline
- nvd_ingest NVD