CVE-2026-71898

CVE-2026-71898 published: An incorrect authorization check in Apache DolphinScheduler allows an authenticated user with only read permission for a project to modify a workflow instance in that project through the PUT /projects/{projectCode}/workflow-instances/{id} endpoint. The endp...

View full NVD advisory → ← Back to CVE watch