Description
Cross Site Scripting vulnerability in Alluxio v.1.8.1 allows a remote attacker to executea arbitrary code via the path parameter in the browse board component.
Remediation
References
https://github.com/Alluxio/alluxio/issues/10552
Related Vulnerabilities
CVE-2021-21290 Vulnerability in maven package io.netty:netty-transport-native-epoll
CVE-2021-23379 Vulnerability in npm package portkiller
CVE-2021-27516 Vulnerability in maven package org.webjars.bower:urijs
CVE-2019-5479 Vulnerability in npm package larvitbase-api
CVE-2020-7760 Vulnerability in maven package org.webjars.bowergithub.codemirror:codemirror