oss-sec mailing list archives
CVE-2023-25691: Apache Airflow Google Provider: Google Cloud Sql Provider Remote Command Execution
From: Jarek Potiuk <potiuk () apache org>
Date: Thu, 23 Feb 2023 17:16:39 +0000
Severity: moderate Description: Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Google Provider.This issue affects Apache Airflow Google Provider: before 8.10.0. References: https://github.com/apache/airflow/pull/29497 https://airflow.apache.org/ https://www.cve.org/CVERecord?id=CVE-2023-25691
Current thread:
- CVE-2023-25691: Apache Airflow Google Provider: Google Cloud Sql Provider Remote Command Execution Jarek Potiuk (Feb 23)