First published: Thu Nov 26 2020(Updated: )
Cloudera Data Engineering (CDE) before 1.1 was vulnerable to a CSRF attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cloudera Data Engineering | <1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-26936 refers to a Cross-Site Request Forgery (CSRF) vulnerability in Cloudera Data Engineering (CDE) before version 1.1.
CVE-2020-26936 has a severity score of 8.8, which is considered high.
CVE-2020-26936 allows an attacker to perform CSRF attacks on Cloudera Data Engineering (CDE) before version 1.1.
To fix CVE-2020-26936, update Cloudera Data Engineering (CDE) to version 1.1 or later.
You can find more information about CVE-2020-26936 in the official Cloudera Data Engineering (CDE) documentation and the Cloudera knowledge base.