CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Apache 1Apache Airflow Providers Apache Hive Feb 13, 2025 Jul 13, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Apache Hive Provider. Patching on top of CVE-2023-35797 Before 6.1.2 the proxy_user option can also inject semicolon. This issue affe...Show more |
1Apache 1Apache Airflow Providers Apache Hive Feb 13, 2025 Jul 3, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Hive Provider. This issue affects Apache Airflow Apache Hive Provider: before 6.1.1. Before version 6.1.1 it was possible to bypass th...Show more |
1Apache 1Apache Airflow Providers Apache Hive Nov 21, 2024 Feb 24, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper Input Validation vulnerability in the Apache Airflow Hive Provider.
This issue affects Apache Airflow Hive Provider versions before 5.1.3.
|
1Apache 1Apache Airflow Providers Apache Hive Apr 16, 2025 Dec 20, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow Hive Provider.This issue affects Apache Airflow Hive Provider: before 5.0.0....Show more |
1Apache 2Airflow Apache Airflow Providers Apache HiveApr 29, 2025 Nov 22, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache Airflow Hive Provider, Apache Airflow allows an attacker to execute arbtrary commands in the task executi...Show more |