CVE-2023-42781

CVSS V2 None CVSS V3 None
Description
Apache Airflow, versions before 2.7.3, has a vulnerability that allows an authorized user who has access to read specific DAGs only, to read information about task instances in other DAGs.  This is a different issue than CVE-2023-42663 but leading to similar outcome. Users of Apache Airflow are advised to upgrade to version 2.7.3 or newer to mitigate the risk associated with this vulnerability.
Overview
  • CVE ID
  • CVE-2023-42781
  • Assigner
  • apache
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-11-12T13:14:09.700Z
  • Last Modified Date
  • 2023-11-12T13:14:09.700Z
History
Created Old Value New Value Data Type Notes
2024-06-25 13:29:48 Added to TrackCVE