In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
https://github.com/advisories/GHSA-ffjh-fjgg-mfpq
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger