CVE-2026-27478 is a critical authentication bypass vulnerability affecting Unity Catalog versions 0.4.0 and earlier. It exists in the token exchange endpoint, where the system fails to validate trusted identity providers when dynamically fetching JWKS for JWT signature validation, allowing attackers to forge tokens. Rated 9.1 Critical on the CVSS scale, this vulnerability is network-exploitable with low complexity, requiring no privileges or user interaction, and results in high impacts on confidentiality and integrity. There is currently no evidence of active exploitation, nor are public exploit codes available on platforms like Metasploit or ExploitDB. Community discussion and media coverage remain minimal, indicating low public attention at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.4.0CPE matchmatch criteria | cpe:2.3:a:unitycatalog:unitycatalog:*:*:*:*:data:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.