CVE-2024-46910: Apache Atlas

High severity, CVSS 7.1. EPSS: 0.6% chance of exploitation in the next 30 days.

An authenticated user can perform XSS and potentially impersonate another user. This issue affects Apache Atlas versions 2.3.0 and earlier. Users are recommended to upgrade to version 2.4.0, which fixes the issue.

Affected products

  • Apache Atlas: from 2.0.0, before 2.4.0 (fixed in 2.4.0)

Published 2025-02-13. Last modified 2026-06-17.