logo

Apache ZooKeeper Vulnerability Allow Attackers to Access Sensitive Data

ID: 59ef7ec2-3f83-5e7d-a8dd-085ebe97963b

STIX ID: report--59ef7ec2-3f83-5e7d-a8dd-085ebe97963b

Feed Name: cybersecurityNews.com

Threat Score
55/100

Date Published: 2026-03-10

Date Updated: 2026-04-21

Author: Abinaya

...
...

Two "Important" vulnerabilities were disclosed in Apache ZooKeeper (affecting 3.8.x and 3.9.x): CVE-2026-24308 causes sensitive configuration values to be written to client log files, and CVE-2026-24281 allows a hostname verification bypass via reverse DNS (PTR) fallback; Apache recommends immediate upgrades to 3.8.6/3.9.5 and reviewing logs for exposed data.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.