CVE-2025-26511

Publication date

2025-02-13 15:44:06

Family

netapp

State

PUBLISHED

Description

Systems running the Instaclustr fork of Stratios Cassandra-Lucene-Index plugin versions 4.0-rc1-1.0.0 through 4.0.16-1.0.0 and 4.1.2-1.0.0 through 4.1.8-1.0.0, installed into Apache Cassandra version 4.x, are susceptible to a vulnerability which when successfully exploited could allow authenticated Cassandra users to remotely bypass RBAC and escalate their privileges.