CVE-2024-55532
published 2025-03-03CVE-2024-55532: Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0. Users are recommended to upgrade to…
PriorityP350critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.72%
49.9th percentile
Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0.
Users are recommended to upgrade to version 2.6.0, which fixes this issue.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | ranger | < 2.6.0 | 2.6.0 |
| apache_software_foundation | apache_ranger | <= 2.5.0 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Apache Ranger Improper Neutralization of Formula Elements vulnerability
ghsa·2025-03-03
CVE-2024-55532 [LOW] CWE-1236 Apache Ranger Improper Neutralization of Formula Elements vulnerability
Apache Ranger Improper Neutralization of Formula Elements vulnerability
Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0.
Users are recommended to upgrade to version 2.6.0, which fixes this issue.
OSV
Apache Ranger Improper Neutralization of Formula Elements vulnerability
osv·2025-03-03
CVE-2024-55532 [LOW] Apache Ranger Improper Neutralization of Formula Elements vulnerability
Apache Ranger Improper Neutralization of Formula Elements vulnerability
Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0.
Users are recommended to upgrade to version 2.6.0, which fixes this issue.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-03-03
Published