NA

CVE-2023-22884

Published: 21/01/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow, Apache Software Foundation Apache Airflow MySQL Provider.This issue affects Apache Airflow: prior to 2.5.1; Apache Airflow MySQL Provider: prior to 4.0.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache airflow

apache apache-airflow-providers-mysql

Github Repositories

CVE-2023-22884 PoC

Apache Airflow SQL injection PoC (CVE-2023-22884) PoC for CVE-2023-22884 is an Apache Airflow RCE vulnerability affecting versions prior to 240 The official report description says: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow, Apache Software Foundation Apache Airfl

CVE-2023-22884 PoC

Apache Airflow SQL injection PoC (CVE-2023-22884) PoC for CVE-2023-22884 is an Apache Airflow RCE vulnerability affecting versions prior to 240 The official report description says: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow, Apache Software Foundation Apache Airfl