ZeroHour

CVE-2026-41280

CVSS 3.1
4.9 medium
EPSS
<1%p37
Published
()
Modified
Description

Incorrect Authorization vulnerability allows users with system login privileges to delete task definitions in unauthorized projects This issue affects Apache DolphinScheduler versions prior to 3.4.2. Users are recommended to upgrade to version 3.4.2, which fixes this issue.

Vendors
apache
Products
dolphinscheduler
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.