Known Vulnerabilities for Apache Impala by Apache Software Foundation
Listed below are 2 of the newest known vulnerabilities associated with "Apache Impala" by "Apache Software Foundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57866 json | Server side request forgery in Apache Impala versions 4.4.x and 4.5.x. Authenticated Impala users with permissions to execu... | Not Provided | 2026-09-09 | 2026-09-10 |
| CVE-2026-56207 json | Signature of Bearer token is not verified in last step of SAML2 authentication for Impala's hs2-http interface, allowing alte... | Not Provided | 2026-09-09 | 2026-09-10 |