VDB
Sign up
CRITICAL9.8

GHSA-6qc3-v8fv-fv9j

Apache Ranger has a Command Injection vulnerability

Details

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Ranger.

This issue affects Apache Ranger: from 0.6 through 2.8.

Are you affected?

Enter the version of the package you're using.

Affected packages

Maven/org.apache.ranger:ranger
Introduced in: 0.6.0

No fixed version published yet for org.apache.ranger:ranger (maven). Pin to a known-safe version or switch to an alternative.

References