Description
An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI.
Remediation
References
https://github.com/OpenTSDB/opentsdb/issues/1241
Related Vulnerabilities
CVE-2019-16776 Vulnerability in maven package org.webjars.bower:npm
CVE-2020-2280 Vulnerability in maven package io.jenkins.plugins:warnings-ng
CVE-2023-40167 Vulnerability in maven package org.eclipse.jetty:jetty-http
CVE-2020-15250 Vulnerability in maven package junit:junit
CVE-2019-0212 Vulnerability in maven package org.apache.hbase:hbase-rest