Description
Policy resource matcher in Apache Ranger before 0.7.1 ignores characters after '*' wildcard character - like my*test, test*.txt. This can result in unintended behavior.
Remediation
References
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger
http://www.securityfocus.com/bid/98958
Related Vulnerabilities
CVE-2023-37905 Vulnerability in npm package ckeditor-wordcount-plugin
CVE-2017-12174 Vulnerability in maven package org.apache.activemq:artemis-core-client
CVE-2019-10241 Vulnerability in maven package org.eclipse.jetty:jetty-server
CVE-2020-6468 Vulnerability in maven package org.webjars.npm:electron
CVE-2023-32068 Vulnerability in maven package org.xwiki.platform:xwiki-platform-url-api