Apache Airflow Providers Cncf Kubernetes
apache-airflow-providers-cncf-kubernetes
Vendor: Apache • 3 CVEs
CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Apache 2Airflow Cncf Kubernetes Apache Airflow Providers Cncf KubernetesJul 24, 2026 May 19, 2026 N/A· v4 8.7 HIGH· v3 N/A· v2 JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only ava...Show more |
1Apache 3Airflow Airflow Cncf KubernetesApache Airflow Providers Cncf KubernetesJul 2, 2026 Jan 24, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Since version 5.2.0, when using deferrable mode with the path of a Kubernetes configuration file for authentication, the Airflow worker serializes this configuration file as a dictionary and sends it to the triggerer by...Show more |
1Apache 2Airflow Cncf Kubernetes Apache Airflow Providers Cncf KubernetesJul 2, 2026 May 30, 2023 N/A· v4 7.2 HIGH· v3 N/A· v2 Arbitrary code execution in Apache Airflow CNCF Kubernetes provider version 5.0.0 allows user to change xcom sidecar image and resources via Airflow connection. In order to exploit this weakness, a user would already ne...Show more |