CVE WATCH / VULNERABILITY DETAIL

CVE-2026-97395

UNKNOWNCVSS 0NVD feed

Published 29 September 2026 · tracked since 30 September 2026

Description

Apache Polaris allows an authenticated principal with permission to create or update Iceberg table properties to set FileIO client settings such as s3.endpoint in table metadata.In versions < 1.8.0, when Polaris performs server-side Iceberg operations, including commits and purges, it may use tho

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-97395 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-97395

UNKNOWNCVSS 0NVD feed

Published 29 September 2026 · tracked since 30 September 2026

Description

Apache Polaris allows an authenticated principal with permission to create or update Iceberg table properties to set FileIO client settings such as s3.endpoint in table metadata.In versions < 1.8.0, when Polaris performs server-side Iceberg operations, including commits and purges, it may use tho

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]