CVE-2026-96443 PUBLISHED

Apache Doris: JDBC driver URL validation bypass leads to remote code execution

Assigner: apache
Reserved: 23.09.2026 Published: 23.09.2026 Updated: 23.09.2026

Insufficient validation of the JDBC driver URL in Apache Doris allows a privileged user to achieve remote code execution on the FE.

Product Status

Vendor Apache Software Foundation
Product Apache Doris
Versions Default: unaffected
  • affected from 2.0.5 to 4.1.3 (incl.)

Credits

  • zhaoyudi (nebula LAB) finder

References

Problem Types

  • CWE-829 Inclusion of functionality from untrusted control sphere CWE