apache kylin CVE-2021-45457 is a vulnerability in Apache Kylin
Published on January 6, 2022

Overly broad CORS configuration
In Apache Kylin, Cross-origin requests with credentials are allowed to be sent from any origin. This issue affects Apache Kylin 2 version 2.6.6 and prior versions; Apache Kylin 3 version 3.1.2 and prior versions; Apache Kylin 4 version 4.0.0 and prior versions.

NVD


Products Associated with CVE-2021-45457

Want to know whenever a new CVE is published for Apache Kylin? stack.watch will email you.

 

Affected Versions

Apache Software Foundation Apache Kylin:

Exploit Probability

EPSS
1.14%
Percentile
78.19%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.