Apache Airflow version 2.9.0 has a vulnerability that allows an authenticated attacker to inject malicious data into the task instance logs.  Users are recommended to upgrade to version 2.9.1, which fixes this issue.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published: 2024-05-14T10:43:20.299Z

Updated: 2024-08-02T02:06:43.596Z

Reserved: 2024-04-10T16:19:52.126Z

Link: CVE-2024-32077

cve-icon Vulnrichment

Updated: 2024-08-02T02:06:43.596Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-14T16:17:01.970

Modified: 2024-06-10T18:15:32.600

Link: CVE-2024-32077

cve-icon Redhat

No data.