CVE-2018-11799: Improper Input Validation
(updated )
A user of Apache Oozie can impersonate other users; the malicious user can construct XML that results in workflows running in other user’s name.
References
Detect and mitigate CVE-2018-11799 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →