CVE-2024-55532

CVE-2024-55532: Apache Ranger: Improper Neutralization of Formula Elements in a CSV File

Vendor Apache Software Foundation
Product Apache Ranger
Weakness CWE-1236
Published March 3, 2025
Last update March 4, 2025

CVSS base score

What the vulnerability does

Description

Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0. Users are recommended to upgrade to version 2.6.0, which fixes this issue.

Key dates

Disclosure timeline

March 3, 2025 CVE published
March 4, 2025 Record updated