CVE-2026-40920EPSS p8.6%

CVE-2026-40920CVE-2026-40920

Description

Privilege Escalation via URL Parameter is reported in Apache Ranger versions <= 2.8.0. Users are recommended to upgrade to version 2.9.0, which fixes this issue.

Scoring

EPSS0.19% probability of exploitation · percentile 8.6% · 2026-08-11T12:00:17Z
Last modified2026-08-10
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.