Critical Vulnerability in Apache Storm Client: CVE-2026-82431
A critical vulnerability (CVE-2026-82431, CVSS score: 9.8) was discovered in the Apache Storm Client, affecting versions 3.0.0 and earlier. The vulnerability allows an attacker to bypass access controls, permitting every authenticated principal to perform user-level operations. Immediate action is required to upgrade to version 3.1.0 or apply mitigations.