First published: Tue Aug 16 2022(Updated: )
Apache Airflow Docker's Provider prior to 3.0.0 shipped with an example DAG that was vulnerable to (authenticated) remote code exploit of code on the Airflow worker host.
Credit: security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Apache-airflow-providers-docker | <3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.