In Apache ZooKeeper versions 3.8.0 through 3.8.6 a high severity vulnerability CVE-2026-59739 was detected. This vulnerability allows an attacker to discover ACL-restricted paths. To address this issue, users should upgrade Apache ZooKeeper to version 3.8.7 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59739.
Read more Application DevelopmentIn Apache ZooKeeper versions before 3.8.7 a high severity vulnerability CVE-2026-59969 was detected. This vulnerability allows a potential man-in-the-middle (MITM) attack. To address this issue, users should upgrade Apache ZooKeeper to version 3.8.7 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59969.
Read more Application DevelopmentIn Apache Airflow versions before 3.9.0 a high severity vulnerability CVE-2026-82310 was detected. This vulnerability allows a deactivated user to maintain indefinite access using an unexpired token. To address this issue, users should upgrade Apache Airflow to version 3.9.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-82310.
Read more Data AnalyticsIn Apache Airflow versions prior to 0.10.0 a critical severity vulnerability CVE-2026-76186 was detected. This vulnerability allows an authenticated attacker to escalate their privileges by using another user’s Keycloak tokens. To address this issue, users should upgrade Apache Airflow to version 0.10.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-76186.
Read more Data AnalyticsIn Keycloak provider component for Apache Airflow versions before 0.10.0 a critical severity vulnerability CVE-2026-76187 was detected. This vulnerability allows an attacker to bypass authentication using credentials from an unrelated application. To address this issue, users should upgrade the Keycloak provider to version 0.10.0 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-76187.
Read more Data AnalyticsIn Royal Elementor Addons component for WordPress versions before 1.7.1067 a medium severity vulnerability CVE-2026-13407 was detected. This vulnerability allows unauthenticated attackers to inject arbitrary HTML into emails sent to the site administrator on form submission. To address this issue, users should upgrade Royal Elementor Addons to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-13407.
Read more CMS