CVE-2022-40754
6.1MEDIUMIn Apache Airflow 2.3.0 through 2.3.4, there was an open redirect in the webserver's `/confirm` endpoint.
Опубликовано: 9/21/2022Обновлено: 5/27/2025
Описание
In Apache Airflow 2.3.0 through 2.3.4, there was an open redirect in the webserver's `/confirm` endpoint.
ИИ-АнализНа базе ИИ
Затронутые продукты
apacheairflow
Ссылки
- https://github.com/apache/airflow/pull/26409PatchThird Party Advisory
- https://lists.apache.org/thread/cn098dcp5x3c402xrb06p3l7nz5goffmMailing ListVendor Advisory
- https://github.com/apache/airflow/pull/26409PatchThird Party Advisory
- https://lists.apache.org/thread/cn098dcp5x3c402xrb06p3l7nz5goffmMailing ListVendor Advisory