Headline
GHSA-5rp4-749p-vx26: Apache Airflow vulnerable to Use of Externally-Controlled Format String
In Apache Airflow 2.3.0 through 2.3.4, part of a url was unnecessarily formatted, allowing for possible information extraction.
Apache Airflow vulnerable to Use of Externally-Controlled Format String
High severity GitHub Reviewed Published Sep 22, 2022
Related news
CVE-2022-40604
In Apache Airflow 2.3.0 through 2.3.4, part of a url was unnecessarily formatted, allowing for possible information extraction.