A vulnerability in UI of Apache Airflow allows an attacker to view unmasked secrets in rendered template values for tasks which were not executed (for example when they were depending on past and previous instances of the task failed). This issue affects Apache Airflow prior to 2.3.1.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2022-11-14T00:00:00
Updated: 2024-08-03T05:41:10.823Z
Reserved: 2022-03-27T00:00:00
Link: CVE-2022-27949
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-11-14T10:15:10.120
Modified: 2024-11-21T06:56:31.917
Link: CVE-2022-27949
Redhat
No data.