Apache Storm Worker Launcher

2 known vulnerabilities in Apache Storm Worker Launcher, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-82430 CVSS 7.8 high Description When launching a Docker or OCI worker, the setuid-root `worker-launcher` first changes ownership of the entire worker…
  • CVE-2026-82429 CVSS 7.8 high Description The setuid-root `worker-launcher` binary adjusts ownership and permissions of worker directories by walking the tree with FTS…