Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2024-45034

около 2 лет назад

Apache Airflow versions before 2.10.1 have a vulnerability that allows DAG authors to add local settings to the DAG folder and get it executed by the scheduler, where the scheduler is not supposed to execute code submitted by the DAG author. Users are advised to upgrade to version 2.10.1 or later, which has fixed the vulnerability.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-45034

около 2 лет назад

Apache Airflow versions before 2.10.1 have a vulnerability that allows ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-92xg-gmrq-5c3w

около 2 лет назад

Apache Airflow vulnerable to Execution with Unnecessary Privileges

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-45034

Apache Airflow versions before 2.10.1 have a vulnerability that allows DAG authors to add local settings to the DAG folder and get it executed by the scheduler, where the scheduler is not supposed to execute code submitted by the DAG author. Users are advised to upgrade to version 2.10.1 or later, which has fixed the vulnerability.

CVSS3: 8.8
2%
Низкий
около 2 лет назад
debian логотип
CVE-2024-45034

Apache Airflow versions before 2.10.1 have a vulnerability that allows ...

CVSS3: 8.8
2%
Низкий
около 2 лет назад
github логотип
GHSA-92xg-gmrq-5c3w

Apache Airflow vulnerable to Execution with Unnecessary Privileges

CVSS3: 8.8
2%
Низкий
около 2 лет назад

Уязвимостей на страницу