/
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-hxq6-x765-3rfr

Published

Last updated

https://images.chainguard.dev/security/CGA-hxq6-x765-3rfr
Package

hadoop-fips-3.3.6

Repository

Chainguard

Latest Update
Fix not planned
Aliases
  • CVE-2022-28108
  • GHSA-h2rr-m97p-6jq9

Severity

Unknown

Summary

Selenium Server (Grid) CSRF

Description

Selenium Server (Grid) before 4.0.0-alpha-7 allows CSRF because it permits non-JSON content types such as application/x-www-form-urlencoded, multipart/form-data, and text/plain.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs