Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.9
CVE-2026-9193: Progress MarkLogic Server Hadoop Privilege Escalation
CVE-2026-9193
CVE-2026-9193
Summary
A security issue in Progress MarkLogic Server's Hadoop integration allows a user with limited access to gain more power and access sensitive areas. This affects versions before 11.3.6 and 12.0.3. To stay safe, update to the latest version or apply the necessary patches.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| progress software corporation | marklogic server | < 11.3.6 |
Original title
Privilege escalation in Progress MarkLogic Server Hadoop integration
Original description
An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with a low-privileged Hadoop role to escalate privileges and execute privileged operations against the Security database.
nvd CVSS3.1
9.9
Vulnerability type
CWE-269
Improper Privilege Management
Published: 5 Aug 2026 · Updated: 5 Aug 2026 · First seen: 5 Aug 2026