Skip to content

Apache Hadoop Vulnerability Exposes Systems Potential Crashes or Data Corruption

Cybersecuritynews •Abinaya • January 26, 2026

A moderate-severity vulnerability in the Hadoop Distributed File System (HDFS) native client could allow attackers to trigger system crashes or corrupt critical data through maliciously crafted URI inputs. The vulnerability, tracked as CVE-2025-27821, affects Apache Hadoop versions 3.2.0 through 3.4.1. Stems from an out-of-bounds write flaw in the URI parser of the HDFS native client. […]