Security Advisory

CVE-2025-26511

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-02-13 15:44:06
Last updated 2026-01-22 19:35:19
Assigner netapp
CVSS score 8.8
State PUBLISHED

Description

Systems running the Instaclustr fork of Stratio's Cassandra-Lucene-Index plugin versions 4.0-rc1-1.0.0 through 4.0.16-1.0.0 and 4.1.2-1.0.0 through 4.1.8-1.0.0, installed into Apache Cassandra version 4.x, are susceptible to a vulnerability which when successfully exploited could allow authenticated Cassandra users to remotely bypass RBAC and escalate their privileges.