CVE-2024-28423
14.03.2024, 19:15
Airflow-Diagrams v2.1.0 was discovered to contain an arbitrary file upload vulnerability in the unsafe_load function at cli.py. This vulnerability allows attackers to execute arbitrary code via uploading a crafted YML file.Enginsight
Vendor | Product | Version |
---|---|---|
feluelle | airflow-diagrams | 2.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration