In Redis in affected versions a high severity vulnerability CVE-2026-92925 was detected. This vulnerability allows an attacker to cause a denial of service or potentially execute arbitrary code. To address this issue, users should upgrade Redis to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-92925.
Read more DatabaseIn MariaDB Connector/J component for MariaDB versions prior to 2.7.14, 3.3.5, 3.4.3, and 3.5.9 a low severity vulnerability CVE-2026-61700 was detected. This vulnerability allows a malicious server to read local files on the client. To address this issue, users should upgrade MariaDB Connector/J to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-61700.
Read more DatabaseIn Apache Airflow versions before 3.9.0 a high severity vulnerability CVE-2026-82310 was detected. This vulnerability allows a deactivated user to maintain indefinite access using an unexpired token. To address this issue, users should upgrade Apache Airflow to version 3.9.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-82310.
Read more Data AnalyticsIn Apache Airflow versions prior to 0.10.0 a critical severity vulnerability CVE-2026-76186 was detected. This vulnerability allows an authenticated attacker to escalate their privileges by using another user’s Keycloak tokens. To address this issue, users should upgrade Apache Airflow to version 0.10.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-76186.
Read more Data AnalyticsIn Keycloak provider component for Apache Airflow versions before 0.10.0 a critical severity vulnerability CVE-2026-76187 was detected. This vulnerability allows an attacker to bypass authentication using credentials from an unrelated application. To address this issue, users should upgrade the Keycloak provider to version 0.10.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-76187.
Read more Data AnalyticsIn fluent-plugin-opentelemetry component for Fluentd versions prior to 0.5.3 a medium severity vulnerability CVE-2026-44163 was detected. This vulnerability allows attackers to cause resource exhaustion by sending a large, compressed payload. To address this issue, users should upgrade fluent-plugin-opentelemetry to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-44163.
Read more Data AnalyticsIn PostGIS component for PostgreSQL versions 3.7.0 and earlier a medium severity vulnerability CVE-2026-90775 was detected. This vulnerability allows attackers to cause the backend process to crash, leading to a denial of service. To address this issue, users should upgrade PostGIS to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-90775.
Read more DatabaseIn PostgreSQL Anonymizer component for PostgreSQL versions earlier than 3.1.4 a high severity vulnerability CVE-2026-19633 was detected. This vulnerability allows unprivileged masked users to execute arbitrary code with elevated privileges. To address this issue, users should upgrade PostgreSQL Anonymizer to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-19633.
Read more DatabaseIn Apache Hive versions before 4.2.1 a critical severity vulnerability CVE-2026-49845 was detected. This vulnerability allows authenticated users to read, modify, or affect unintended partition metadata. To address this issue, users should upgrade Apache Hive to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-49845.
Read more Data Analytics