CVE-2026-32966
EUVD-2026-3758017.06.2026, 13:20
DataSource API Missing Authorization Check Leads to Arbitrary Data Source Metadata Disclosure in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: before 3.4.2. Users are recommended to upgrade to version 3.4.2, which fixes the issue.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apache | dolphinscheduler | 𝑥 < 3.4.2 |
𝑥
= Vulnerable software versions