Description
Apache Airflow FAB provider versions 3.7.3 through 3.8.0 do not validate the issuer or audience of Azure AD `id_token`s during OAuth login. Deployments are affected only when the FAB auth manager is configured with Azure AD as an OAuth provider. Because the signing keys are fetched from Microsoft's **multi-tenant** JWKS endpoint, an `id_token` minted in *any* Azure tenant — including one the attacker creates — passes signature verification, and the username and role assignments are then read from that attacker-controlled token. Anyone able to register an Azure tenant can therefore authenticate to the Airflow UI with no prior access to the deployment.

The fix for **CVE-2026-59243** was incomplete, and this advisory closes the remaining gap: that fix made the provider verify the `id_token` signature, but did not add issuer or audience checks. Operators who already applied the CVE-2026-59243 fix are **still affected and must upgrade again** — 3.7.3 is the release that shipped that fix, so every version containing it falls inside this affected range. Upgrade to apache-airflow-providers-fab `3.8.1` or later.
Published: 2026-09-08
Score: 9.1 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Cross‑tenant authentication bypass via Azure AD id_token
Action: Immediate Patch
AI Analysis

Impact

The Apache Airflow FAB provider failed to verify the issuer and audience claims of Azure AD id_tokens during OAuth authentication. Because the provider trusts Microsoft’s multi‑tenant JWKS endpoint, any token minted in an attacker‑controlled Azure tenant passes signature validation, then carries the attacker’s username and role assignments into Airflow. This flaw allows an attacker who can register an Azure tenant to authenticate to the Airflow UI with full privileges, raising the risk of unauthorized data access, configuration changes, and potential data exfiltration.

Affected Systems

Apache Software Foundation’s Apache Airflow FAB provider is impacted for all releases from 3.7.3 through 3.8.0 inclusive. Operators who applied the CVE‑2026‑59243 fix, which only added signature verification, remain vulnerable because issuer/audience checks were not added; therefore any version containing that fix within the range must be upgraded to 3.8.1 or later to remediate the issue.

Risk and Exploitability

The vulnerability carries a CVSS score of 9.1, indicating critical severity, and is not listed in CISA’s KEV catalog. Exploitation requires only the ability to create an Azure tenant and issue a signed id_token, with no need for internal network access to Airflow. The attack vector is straightforward: an attacker registers a tenant, generates an id_token, and authenticates to Airflow, bypassing tenant restrictions and gaining legitimate access to the system.

Generated by OpenCVE AI on September 10, 2026 at 02:58 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the apache-airflow-providers-fab package to version 3.8.1 or later.
  • Re‑verify the Airflow OAuth configuration to ensure issuer and audience claims are enforced for Azure AD tokens.
  • Remove or disable any unused or test Azure tenants from the OAuth provider configuration to reduce the attack surface.

Generated by OpenCVE AI on September 10, 2026 at 02:58 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Apache apache-airflow-providers-fab
CPEs cpe:2.3:a:apache:apache-airflow-providers-fab:*:*:*:*:*:*:*:*
Vendors & Products Apache apache-airflow-providers-fab

Thu, 10 Sep 2026 00:00:00 +0000

Type Values Removed Values Added
First Time appeared Apache
Apache airflow Fab Provider
Vendors & Products Apache
Apache airflow Fab Provider

Tue, 08 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:00:00 +0000

Type Values Removed Values Added
Description Apache Airflow FAB provider versions 3.7.3 through 3.8.0 do not validate the issuer or audience of Azure AD `id_token`s during OAuth login. Deployments are affected only when the FAB auth manager is configured with Azure AD as an OAuth provider. Because the signing keys are fetched from Microsoft's **multi-tenant** JWKS endpoint, an `id_token` minted in *any* Azure tenant — including one the attacker creates — passes signature verification, and the username and role assignments are then read from that attacker-controlled token. Anyone able to register an Azure tenant can therefore authenticate to the Airflow UI with no prior access to the deployment. The fix for **CVE-2026-59243** was incomplete, and this advisory closes the remaining gap: that fix made the provider verify the `id_token` signature, but did not add issuer or audience checks. Operators who already applied the CVE-2026-59243 fix are **still affected and must upgrade again** — 3.7.3 is the release that shipped that fix, so every version containing it falls inside this affected range. Upgrade to apache-airflow-providers-fab `3.8.1` or later.
Title Apache Airflow FAB provider: FAB Azure AD OAuth: id_token issuer/audience not validated — cross-tenant authentication bypass
Weaknesses CWE-346
References

Subscriptions

Apache Airflow Fab Provider Apache-airflow-providers-fab
cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2026-09-16T14:57:01.780Z

Reserved: 2026-08-17T18:58:02.812Z

Link: CVE-2026-75156

cve-icon Vulnrichment

Updated: 2026-09-08T18:59:55.297Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T17:18:30.393

Modified: 2026-09-18T14:25:21.873

Link: CVE-2026-75156

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T03:00:09Z

Weaknesses