CVE-2024-32077
14.05.2024, 16:17
Apache Airflow version 2.9.0 has a vulnerability that allows an authenticated attacker to inject malicious data into the task instance logs. Users are recommended to upgrade to version 2.9.1, which fixes this issue.
Vendor | Product | Version |
---|---|---|
apache | airflow | 2.9.0 |
apache | airflow | 2.9.0:beta1 |
apache | airflow | 2.9.0:beta2 |
apache | airflow | 2.9.0:rc1 |
apache | airflow | 2.9.0:rc2 |
apache | airflow | 2.9.0:rc3 |
𝑥
= Vulnerable software versions
References