Количество 4
Количество 4
CVE-2023-47037
We failed to apply CVE-2023-40611 in 2.7.1 and this vulnerability was marked as fixed then. Apache Airflow, versions before 2.7.3, is affected by a vulnerability that allows authenticated and DAG-view authorized Users to modify some DAG run detail values when submitting notes. This could have them alter details such as configuration parameters, start date, etc. Users should upgrade to version 2.7.3 or later which has removed the vulnerability.
CVE-2023-47037
We failed to applyCVE-2023-40611 in 2.7.1 and this vulnerability was m ...
GHSA-hm9r-7f84-25c9
Apache Airflow allows authenticated and DAG-view authorized users to modify some DAG run detail values when submitting notes
BDU:2023-07932
Уязвимость сетевого программного средства Apache Airflow, связанная с неправильной авторизацией, позволяющая нарушителю изменять произвольные файлы
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-47037 We failed to apply CVE-2023-40611 in 2.7.1 and this vulnerability was marked as fixed then. Apache Airflow, versions before 2.7.3, is affected by a vulnerability that allows authenticated and DAG-view authorized Users to modify some DAG run detail values when submitting notes. This could have them alter details such as configuration parameters, start date, etc. Users should upgrade to version 2.7.3 or later which has removed the vulnerability. | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
CVE-2023-47037 We failed to applyCVE-2023-40611 in 2.7.1 and this vulnerability was m ... | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
GHSA-hm9r-7f84-25c9 Apache Airflow allows authenticated and DAG-view authorized users to modify some DAG run detail values when submitting notes | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
BDU:2023-07932 Уязвимость сетевого программного средства Apache Airflow, связанная с неправильной авторизацией, позволяющая нарушителю изменять произвольные файлы | CVSS3: 4.3 | 0% Низкий | около 2 лет назад |
Уязвимостей на страницу