CVE-2021-45230
20.01.2022, 11:15
In Apache Airflow prior to 2.2.0. This CVE applies to a specific case where a User who has "can_create" permissions on DAG Runs can create Dag Runs for dags that they don't have "edit" permissions for.Enginsight
Vendor | Product | Version |
---|---|---|
apache | airflow | 1.10.0 ≤ 𝑥 ≤ 1.10.15 |
apache | airflow | 2.0.0 ≤ 𝑥 < 2.2.0 |
𝑥
= Vulnerable software versions