Improper Authentication in Apache Hive - CVE-2026-53561
Published: August 27, 2026
Vulnerability details
The vulnerability allows a remote attacker to authenticate as an arbitrary Hive user and obtain an authenticated HiveServer2 session.
The vulnerability exists due to improper authentication in HiveServer2 SAML bearer-token validation when handling forged bearer tokens sent to the /cliservice HTTP endpoint. A remote attacker can send a forged authorization bearer token to authenticate as an arbitrary Hive user and obtain an authenticated HiveServer2 session.
The issue affects deployments using HTTP transport with SAML authentication enabled.