3 ms·
High Rated CVSS Apache Airflow Remote Code Execution
- sandeep_kamble 2y agoThe blog post discusses a vulnerability (CVE-2024-39877) in Apache Airflow, allowing authenticated users to execute arbitrary code via the doc_md parameter. The issue involves improper handling of Jinja2 templates, leading to potential security risks.