What is CVE-2026-55814?
CVE-2026-55814 is a Missing Authentication vulnerability in Apache Ranger Download APIs on versions ≤ 2.8.0, allowing unauthenticated users to download resources. Users are recommended to upgrade to version 2.9.0 to fix this issue.
Azərbaycanca: CVE-2026-55814 Apache Ranger-in 2.8.0 və daha əvvəlki versiyalarında Download API-lərində autentifikasiya boşluğudur. Bu zəiflik təsdiqlənməmiş istifadəçilərə resursları yükləməyə imkan verir. İstifadəçilərə 2.9.0 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-306; shared vendor: Apache
FAQ2
Which versions of Apache Ranger are affected by CVE-2026-55814?
CVE-2026-55814 affects Apache Ranger versions 2.8.0 and earlier.
What action is recommended to remediate CVE-2026-55814?
Users are recommended to upgrade to Apache Ranger version 2.9.0 to fix this vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.