The provided secure solrconfig.xml sample configuration does not enforce Sentry authorization on /update/json/docs.
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://www.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.html | vendor advisory |