Security Advisory
CVE-2021-41532
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In Apache Ozone before 1.2.0, Recon HTTP endpoints provide access to OM, SCM and Datanode metadata. Due to a bug, any unauthenticated user can access the data from these endpoints.