NA

CVE-2024-32077

Published: 14/05/2024 Updated: 10/06/2024

Vulnerability Summary

Apache Airflow version 2.9.0 has a vulnerability that allows an authenticated malicious user to inject malicious data into the task instance logs.  Users are recommended to upgrade to version 2.9.1, which fixes this issue.

Mailing Lists

Severity: moderate Affected versions: - Apache Airflow 290 before 291 Description: Apache Airflow version 290 has a vulnerability that allows an authenticated attacker to inject malicious data into the task instance logs  Users are recommended to upgrade to version 291, which fixes this issue Credit: Ming (finder) Jens Scheffl ...