8.2
CVE-2026-9057
- EPSS 0.26%
- Veröffentlicht 20.05.2026 04:39:38
- Zuletzt bearbeitet 20.05.2026 14:04:18
- Quelle 4ac701fe-44e9-4bcd-9585-dd6449
- CVE-Watchlists
- Unerledigt
Security fix for Qlik Talend Administration Center URL access control vulnerability
A broken access control issue has been identified in the Talend Administration Center, that allows a user with “View” permission to modify the Talend Studio update URL. This issue was resolved in a patch, which is already available.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerTalend
≫
Produkt
Talend Administration Center
Default Statusaffected
Version
8.0
Version <
Patch_20251121_QTAC-1471_R2025-11_v1-8.0.1
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.26% | 0.172 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 4ac701fe-44e9-4bcd-9585-dd6449257611 | 8.2 | 1.8 | 5.8 |
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
|
https://community.qlik.com/t5/Official-Support-Articles/Security-fix-for-Qlik-Talend-Administration-Center-URL-access/ta-p/2548524