CVE-2026-40920EPSS p8.6%
CVE-2026-40920CVE-2026-40920
Description
Privilege Escalation via URL Parameter is reported in Apache Ranger versions <= 2.8.0.
Users are recommended to upgrade to version 2.9.0, which fixes this issue.
Scoring
| EPSS | 0.19% probability of exploitation · percentile 8.6% · 2026-08-11T12:00:17Z |
| Last modified | 2026-08-10 |