CRITICALVulnerability
Verified
Global
NVD CRITICAL: CVE-2026-42032 — CKAN is an open-source DMS (data management system) for powering data hubs and d...
·Source: NIST NVD
Updated:
Executive Summary
CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to bypass authorization in order to gain access to private resources and PostgreSQL system information This vulnerability is fixed in 2.10.10 and 2.11.5.
Analysis
CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to bypass authorization in order to gain access to private resources and PostgreSQL system information This vulnerability is fixed in 2.10.10 and 2.11.5. CVSS Score: 9.1. Published: 2026-05-13T19:17:22.853.