oss-sec: CVE-2026-42811: Apache Polaris: In plain terms, Polaris is supposed to issue short-lived GCS credentials that only work for one table's files, but a crafted namespace or table name can cause

Read full story on seclists.org
oss-sec: CVE-2026-42811: Apache Polaris: In plain terms, Polaris is supposed to issue short-lived GCS credentials that only work for one table's files, but a crafted namespace or table name can cause

Summary

Severity: important Affected versions: - Apache Polaris before 1.4.1 Description: In plain terms, Apache Polaris is supposed to issue short-lived GCS credential...

Original reporting

Open original source

AFBytes is a read-only aggregator. Use the original source for full context and complete reporting.

Related coverage

Read full article on seclists.org