CVE-2026-26010 | open-metadata OpenMetadata up to 1.11.7 ingestionPipelines privileges management (GHSA-pqqf-7hxm-rj5r)
A vulnerability classified as critical was found in open-metadata OpenMetadata up to 1.11.7. The affected element is an unknown function of the file /api/v1/ingestionPipelines. Executing a manipulation can lead to improper privilege management.
The identification of this vulnerability is CVE-2026-26010. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.