Back to search
CVE-2022-27949
Published: Nov 14, 2022
Modified: Apr 30, 2025
PUBLISHED
Description
A vulnerability in UI of Apache Airflow allows an attacker to view unmasked secrets in rendered template values for tasks which were not executed (for example when they were depending on past and previous instances of the task failed). This issue affects Apache Airflow prior to 2.3.1.
| Vendor | Product | Versions |
|---|---|---|
Apache Software Foundation | Apache Airflow | affected unspecified - < 2.3.1 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now