atlasPYSEC-2017-107
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to Stored Cross-Site Scripting in the edit-tag functionality.
Medium6.1CVE-2017-3151 · Published Aug 29, 2017 · updated Oct 9, 2025
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| apache-atlas PyPI | all versions | No fix yet |
Details and references
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to Stored Cross-Site Scripting in the edit-tag functionality.
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- Severity from
- the CVSS score
- Also known as
- CVE-2017-3151, GHSA-236h-r3w7-c85c