CVE-2026-42537EPSS p29.2%

CVE-2026-42537CVE-2026-42537

Description

Remote Code Execution via JDBC URL Injection in Apache Ranger <= 2.8.0 Users are recommended to upgrade to version 2.9.0, which fixes this issue.

Scoring

EPSS0.36% probability of exploitation · percentile 29.2% · 2026-08-11T12:00:17Z
Last modified2026-08-10
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.