Threats Tagged 'cve-2026-44615'
View all threats tagged with 'cve-2026-44615'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-44615'
Click on any threat for detailed analysis and mitigation recommendations
Path traversal vulnerability in Apache Zeppelin. When FileSystemNotebookRepo is configured, an authenticated attacker with permission to rename a note, or access to folder operations, could supply traversal segments in note or folder paths. Zeppelin composed these values into filesystem paths using the server's filesystem or Hadoop identity without ensuring that the result remained under the configured notebook directory. This could allow notebook files or directories to be moved, written, or deleted outside the notebook root. This issue affects Apache Zeppelin versions 0.9.0 through 0.12.0. Users are recommended to upgrade to version 0.12.1, which fixes this issue. Join the discussion | GCVE Database | 07/31/2026, 12:30:30 UTC Added: 07/31/2026, 15:37:32 UTC |
CVE-2026-44615 is a path traversal vulnerability in Apache Zeppelin affecting versions 0.9.0 through 0.12.0. When FileSystemNotebookRepo is configured, an authenticated user with permission to rename notes or perform folder operations can supply path traversal sequences. This allows manipulation of filesystem paths outside the intended notebook directory, potentially moving, writing, or deleting files or directories beyond the notebook root. The issue is fixed in Apache Zeppelin version 0.12.1. Join the discussion | CVE Database V5 | 07/31/2026, 11:05:07 UTC Added: 07/31/2026, 11:22:53 UTC |
Showing 1 to 2 of 2 results