Apache YuniKorn 1.9.0 及更早版本允许通过设置 Pod 上的二级标签(secondary label)绕过对用户注解(user annotation)的检查。如果 Pod 具有标签 ,则不会执行限制用户注解内容的检查。该标签用于在部署中识别 YuniKorn 应用程序本身。 该绕过漏洞允许任何用户指定任意的用户信息注解。这些任意的用户信息可能导致用户访问其原本无权访问的队列(queue)。如果应用程序在错误的队列中运行,可能会影响该队列的配额使用情况。此外,基于用户的配额 enforcement
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache YuniKorn | 0 ~ 1.10.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78243 | 2.1 LOW | Apache YuniKorn: LDAP Group provider panics on lowercase attribute name |
| CVE-2026-92393 | 2.0 LOW | Apache YuniKorn: Admission control bypass via workload UPDATE operation |
| CVE-2026-93684 | Apache Impala: Stored XSS in Impala query plans | |
| CVE-2026-90466 | Apache Impala: Path traversal executes JARs outside trusted paths | |
| CVE-2026-97720 | Apache Impala: Impala Executor Webserver Auth Bypass |
No comments yet