CVE-2026-32228
EUVD-2026-2366418.04.2026, 07:16
UI / API User with asset materialize permission could trigger dags they had no access to. Users are advised to migrate to Airflow version 3.2.0 that fixes the issue.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| apache | airflow | 3.0.0 ≤ 𝑥 < 3.2.0 | CNA |