Filtered by vendor Collibra Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-10622 1 Collibra 2 Collibra Platform (on-prem), Collibra Platform (saas) 2026-06-02 8.2 High
Improper Authentication in REST API in Collibra Agent, allows a remote unauthenticated attacker to access privileged functionality via exposed '/rest/* endpoints.
CVE-2026-10621 1 Collibra 2 Collibra Platform (on-prem), Collibra Platform (saas) 2026-06-02 7.5 High
Path traversal in restore handler in Collibra Agent, allows an attacker to write arbitrary files via a crafted ZIP archive. Collibra Agent fails to properly validate and canonicalize file path during ZIP extraction, this can allow an attacker to write files outside the intended extraction directory.