Apache Airflow Spark Provider,... CVE-2023-40272

- AV AC AU C I A
发布: 2023-08-17
修订: 2024-10-01

Apache Airflow Spark Provider, versions before 4.1.3, is affected by a vulnerability that allows an attacker to pass in malicious parameters when establishing a connection giving an opportunity to read files on the Airflow server. It is recommended to upgrade to a version that is not affected.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息