📦 Ranger

by Apache

🔍 What is Ranger?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-55532

CRITICAL CVSS 9.8 Mar 3, 2025

This vulnerability allows CSV formula injection in Apache Ranger's export feature, enabling attackers to execute arbitrary commands or exfiltrate data when exported CSV files are opened in spreadsheet...

CVE-2024-45479

CRITICAL CVSS 9.1 Jan 21, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in the Edit Service Page of Apache Ranger UI. Attackers can exploit this to make unauthorized requests from the Ranger server to i...

CVE-2021-40331

HIGH CVSS 8.1 May 5, 2023

This vulnerability in Apache Ranger Hive Plugin allows users with only SELECT privilege on a database to alter table ownership in Hive when the plugin is enabled. This affects Apache Ranger Hive Plugi...

CVE-2024-45478

MEDIUM CVSS 4.8 Jan 21, 2025

A stored cross-site scripting (XSS) vulnerability exists in the Edit Service Page of Apache Ranger's web interface. This allows attackers to inject malicious scripts that execute when legitimate users...