VYPR

Hive Metastore

by Apache

CVEs (1)

  • CVE-2026-49845CriAug 25, 2026
    risk 0.57cvss 9.8epss 0.01

    SQL injection in Hive Metastore direct SQL partition-name resolution in Apache Hive before 4.2.1 on all platforms allows authenticated users with access to Hive Metastore APIs to read, modify, or affect unintended partition metadata (including statistics updates, truncation…