Apache YuniKorn 1.9.0 及更早版本未对工作负载的 UPDATE 操作实施标签和用户注解检查,从而绕过了所有安全检查。在 YuniKorn 中,工作负载定义如下 Kubernetes 对象:“deployments”(部署)、“replicasets”(副本集)、“statefulsets”(有状态集)、“daemonsets”(守护进程集)、“jobs”(作业)和“cronjobs”(定时作业)。对于 CREATE 操作,所有对象类型均正确执行了检查。 该漏洞使得任何用户均可指定任意的用户信息注
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache YuniKorn | 0 ~ 1.10.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-97146 | 4.8 MEDIUM | Apache YuniKorn: Admission control bypass via system label forgery |
| CVE-2026-78243 | 2.1 LOW | Apache YuniKorn: LDAP Group provider panics on lowercase attribute name |
| CVE-2026-93684 | Apache Impala: Stored XSS in Impala query plans | |
| CVE-2026-90466 | Apache Impala: Path traversal executes JARs outside trusted paths | |
| CVE-2026-97720 | Apache Impala: Impala Executor Webserver Auth Bypass |
No comments yet