Tampering Vulnerability in Microsoft Azure Data Explorer Plugin for Kafka Connect
CVE-2026-42316
5.9MEDIUM
What is CVE-2026-42316?
The Kafka Connect plugin for Azure Data Explorer allowed potential attackers with configuration privileges to manipulate management commands using unsanitized user input, posing risks like schema enumeration or ingestion mapping tampering. This vulnerability, affecting versions prior to 5.2.3, is resolved in the latest update.
Affected Version(s)
kafka-sink-azure-kusto < 5.2.3
