CVE-2026-71899

CVE-2026-71899 published: A missing authorization vulnerability exists in the `query-dynamic-sub-workflows` API of Apache DolphinScheduler. The API does not properly verify whether the authenticated user has permission to access the workflows being queried. An authenticated user ...

View full NVD advisory → ← Back to CVE watch