Apache · Dolphinscheduler · CVE-2026-41280
**Name of the Vulnerable Software and Affected Versions**
Apache DolphinScheduler versions prior to 3.4.2
**Description**
An incorrect authorization issue allows users with system login privileges to delete task definitions in projects for which they are not authorized.
**Recommendations**
Upgrade to version 3.4.2.