Description
An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI.
Remediation
References
https://github.com/OpenTSDB/opentsdb/issues/1241
Related Vulnerabilities
CVE-2014-7810 Vulnerability in maven package org.mortbay.jasper:apache-el
CVE-2017-1000085 Vulnerability in maven package org.jenkins-ci.plugins:subversion
CVE-2022-23496 Vulnerability in maven package nl.basjes.parse.useragent:yauaa-logparser
CVE-2022-37767 Vulnerability in maven package io.pebbletemplates:pebble
CVE-2018-3713 Vulnerability in npm package angular-http-server