oss-sec mailing list archives

CVE-2023-25695: Information disclosure in Apache Airflow


From: Jarek Potiuk <potiuk () apache org>
Date: Wed, 15 Mar 2023 00:30:17 +0000

Severity: low

Description:

Generation of Error Message Containing Sensitive Information vulnerability in Apache Software Foundation Apache 
Airflow.This issue affects Apache Airflow: before 2.5.2.

Credit:

kuteminh11 (finder)

References:

https://github.com/apache/airflow/pull/29501
https://airflow.apache.org/
https://www.cve.org/CVERecord?id=CVE-2023-25695


Current thread: