A vulnerability was found in Apache Cassandra up to 4.0.14/4.1.6/5.0.1. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to improper authorization.

This vulnerability was named CVE-2025-24860. Access to the local network is required for this attack. There is no exploit available.

It is recommended to upgrade the affected component.