CSRF Vulnerability in Cloudera Data Engineering Product
CVE-2020-26936
8.8HIGH
What is CVE-2020-26936?
Cloudera Data Engineering versions prior to 1.1 are susceptible to a Cross-Site Request Forgery (CSRF) attack, which could allow an attacker to perform unauthorized actions on behalf of a legitimate user. This vulnerability can compromise security, enabling attackers to manipulate user sessions and gain access to sensitive data. It’s crucial for users to upgrade to the latest version to mitigate this risk and strengthen their system security.