Skip to main content

CVE-2023-42663

Severity Medium
Score 6.5/10

Summary

Apache Airflow, versions prior to 2.7.2rc1, has a vulnerability that allows an authorized user who has access to read specific DAGs only, to read information about task instances in other DAGs.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • LOW
  • HIGH
  • NONE

Advisory Timeline

  • Published