CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-42032 — CKAN is an open-source DMS (data management system) for powering data hubs and d...

·Source: NIST NVD

Updated:

Executive Summary

CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to bypass authorization in order to gain access to private resources and PostgreSQL system information This vulnerability is fixed in 2.10.10 and 2.11.5.

Analysis

CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to bypass authorization in order to gain access to private resources and PostgreSQL system information This vulnerability is fixed in 2.10.10 and 2.11.5. CVSS Score: 9.1. Published: 2026-05-13T19:17:22.853.

Indicators of Compromise (1)

CVE (1)
CVE-2026-42032
Source Attribution

Originally published by NIST NVD on May 13, 2026. Verified by: NIST.

Related Threats