Junglewise Threat Intelligence

CVE-2018-11770: org.apache.spark:spark-core_2.10 and org.apache.spark:spark-core_2.11 Improper Authentication vulnerability

CVE-2018-11770 · Severity: low · CVSS 3.1 · Published 2018-11-09

Technologies: org.apache.spark:spark-core_2.10 (Maven), org.apache.spark:spark-core_2.11 (Maven). Vendors: Maven.

Executive brief

org.apache.spark:spark-core_2.10 and org.apache.spark:spark-core_2.11 Improper Authentication vulnerability

Affected products

  • Maven org.apache.spark:spark-core_2.10
  • Maven org.apache.spark:spark-core_2.11

Related threats