pkg:Maven/org.apache.ranger:ranger
16 total CVEsCRITICAL3HIGH5MEDIUM8
✅ Check your installed version
All known vulnerabilities
- CRITICAL9.8CVE-2017-7676Policy resource matcher in Apache Ranger before 0.7.1 ignores characters after '' wildcard characterfrom 0, < 0.7.1
- CRITICAL9.8CVE-2016-0733The Admin UI in Apache Ranger before 0.5.1 does not properly handle authentication requests that lack a passwordfrom 0, < 0.5.1
- from 0, < 2.5.0
- >= 2.3.0, < 2.4.0
- >= 0.5.0, < 0.5.2
- HIGH8.8CVE-2018-11778UnixAuthenticationService in Apache Ranger was updated to correctly handle user input to avoid Stack-based buffer overflowfrom 0, < 1.2.0
- from 0, < 0.5.3
- HIGH7.1CVE-2015-0266Apache Ranger allows users to bypass intended access restrictions via direct access to module URLsfrom 0, < 0.5.0
- MEDIUM6.5CVE-2015-5167Apache Ranger allows users to bypass intended access restrictions via the REST APIfrom 0, < 0.5.1
- from 0, < 0.6.2
- from 0, < 0.5.0
- >= 0.7.0, < 2.0.0
- from 0, < 0.7.1
- MEDIUM4.8CVE-2024-45478Apache Ranger has Stored Cross-site Scripting vulnerability in Edit Service Pagefrom 0, < 2.5.0
- MEDIUM4.8CVE-2016-8751Apache Ranger admin users can store some arbitrary javascript code to be executed when normal users login and access policiesfrom 0, < 0.6.3
- MEDIUM4.8CVE-2016-5395Apache Ranger allows remote authenticated administrators to inject arbitrary web script or HTMLfrom 0, < 0.6.1