CVE-2026-32967
Apache Software Foundation Apache DolphinScheduler, dolphinscheduler
Incorrect Authorization vulnerability of `/v2` experimental interface in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: before 3.4.2. Users are recommended to upgrade to version 3.4.2, which fixes the issue.
- CVSS
- 9.1
- EPSS
- 0.34% 26.3% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.17