Untriaged
Apache Airflow: Potential XSS Vulnerability
Apache Airflow versions before 2.9.3 have a vulnerability that allows an authenticated attacker to inject a malicious link when installing a provider. Users are recommended to upgrade to version 2.9.3, which fixes this issue.
Affected products
airflow
- <2.9.3
apache-airflow
- <2.9.3
Matching in nixpkgs
pkgs.apache-airflow
Programmatically author, schedule and monitor data pipelines
-
nixos-unstable -
- nixpkgs-unstable 2.7.3
Package maintainers
-
@bhipple Benjamin Hipple <bhipple@protonmail.com>
-
@ingenieroariel Ariel Nunez <ariel@nunez.co>
-
@gbpdt Graham Bennett <nix@pdtpartners.com>