You are viewing a plain text version of this content. The canonical link for it is here.
Posted to announce@apache.org by Jarek Potiuk <po...@apache.org> on 2023/02/23 17:43:54 UTC

CVE-2023-25693: Sqoop Apache Airflow Provider Remote Code Execution Vulnerability

Severity: moderate

Description:

Improper Input Validation vulnerability in the Apache Airflow Sqoop Provider.

This issue affects Apache Airflow Sqoop Provider versions before 3.1.1.

Credit:

 L3yx of Syclover Security Team (finder)

References:

https://github.com/apache/airflow/pull/29500
https://airflow.apache.org/
https://www.cve.org/CVERecord?id=CVE-2023-25693