CRITICAL9.8
GHSA-6qc3-v8fv-fv9j
Apache Ranger has a Command Injection vulnerability
Details
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Ranger.
This issue affects Apache Ranger: from 0.6 through 2.8.
Are you affected?
Enter the version of the package you're using.
Affected packages
Maven/org.apache.ranger:ranger
Introduced in:
0.6.0No fixed version published yet for org.apache.ranger:ranger (maven). Pin to a known-safe version or switch to an alternative.