Hadoop/Hortonworks HDP

Software version: Apache Ranger v. 0.4.0 (previously XA Secure v. 3.5.001)

CVE-2015-3985Missing function level access control in administration interface
CVE-2015-3984Stored cross-site scripting vulnerability through User Agent

Technical details to be announced soon.

Other articles