CVE-2024-27906

CVSS V2 None CVSS V3 None
Description
Apache Airflow, versions before 2.8.2, has a vulnerability that allows authenticated users to view DAG code and import errors of DAGs they do not have permission to view through the API and the UI. Users of Apache Airflow are recommended to upgrade to version 2.8.2 or newer to mitigate the risk associated with this vulnerability
Overview
  • CVE ID
  • CVE-2024-27906
  • Assigner
  • apache
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-02-29T11:02:19.310Z
  • Last Modified Date
  • 2024-06-04T17:47:00.639Z
History
Created Old Value New Value Data Type Notes
2024-06-26 02:01:31 Added to TrackCVE