CRITICAL 9.8 Maven
Apache Ranger has a Code Injection vulnerability
GHSA-c87w-642h-m97h · CVE-2025-59059
Published · Modified
AI SAST
Find this class of vulnerability in your own code
Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.
Description
Remote Code Execution Vulnerability in NashornScriptEngineCreator is reported in Apache Ranger versions <= 2.7.0.
Users are recommended to upgrade to version 2.8.0, which fixes this issue.
Ready to move
Start Securing
Free, no credit card | First findings in minutes