在 Apache Impala 4.5.2 及更早版本的 Impala 执行器(executors)中,JWT/OAuth 身份验证的实现存在缺陷,攻击者可利用此漏洞访问由执行器的 Web 服务器提供的资源,前提是该 Web 服务器已配置为接受 JWT/OAuth 令牌。由于未对 Bearer 令牌(JWT)签名进行验证,导致 Web 服务器接受任何合法的 JWT 令牌。 建议用户要么为 Impala 执行器禁用 JWT/OAuth 身份验证,要么升级到修复此问题的 4.5.3 版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Impala | 4.1.0 ~ 4.5.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-97146 | 4.8 MEDIUM | Apache YuniKorn: Admission control bypass via system label forgery |
| CVE-2026-78243 | 2.1 LOW | Apache YuniKorn: LDAP Group provider panics on lowercase attribute name |
| CVE-2026-92393 | 2.0 LOW | Apache YuniKorn: Admission control bypass via workload UPDATE operation |
| CVE-2026-93684 | Apache Impala: Stored XSS in Impala query plans | |
| CVE-2026-90466 | Apache Impala: Path traversal executes JARs outside trusted paths |
No comments yet