Логотип exploitDog
bind:CVE-2025-66388
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-66388

Количество 3

Количество 3

nvd логотип

CVE-2025-66388

около 2 месяцев назад

A vulnerability in Apache Airflow allowed authenticated UI users to view secret values in rendered templates due to secrets not being properly redacted, potentially exposing secrets to users without the appropriate authorization. Users are recommended to upgrade to version 3.1.4, which fixes this issue.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-66388

около 2 месяцев назад

A vulnerability in Apache Airflow allowed authenticated UI users to vi ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-fv47-pqh6-wxgq

около 2 месяцев назад

Apache Airflow exposes secret values to authenticated UI users via rendered templates

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-66388

A vulnerability in Apache Airflow allowed authenticated UI users to view secret values in rendered templates due to secrets not being properly redacted, potentially exposing secrets to users without the appropriate authorization. Users are recommended to upgrade to version 3.1.4, which fixes this issue.

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-66388

A vulnerability in Apache Airflow allowed authenticated UI users to vi ...

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-fv47-pqh6-wxgq

Apache Airflow exposes secret values to authenticated UI users via rendered templates

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу