SSRF vulnerability in Apache Airflow
Moderate severity
GitHub Reviewed
Published
Dec 17, 2020
to the GitHub Advisory Database
•
Updated Sep 11, 2024
Description
Reviewed
Dec 17, 2020
Published to the GitHub Advisory Database
Dec 17, 2020
Last updated
Sep 11, 2024
In Apache Airflow versions prior to 1.10.13, the Charts and Query View of the old (Flask-admin based) UI were vulnerable for SSRF attack.
References