Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-88044
HistoryFeb 28, 2023 - 12:00 a.m.

Apache Airflow AWS Provider Information Disclosure Vulnerability

2023-02-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
3
apache airflow
aws provider
information disclosure
vulnerability
error message
sensitive information
attacker
exploited.

AI Score

6.1

Confidence

High

EPSS

0.001

Percentile

48.0%

Apache Airflow is the United States Apache (Apache) Foundation’s set of open source platform for creating, managing and monitoring workflow. The platform is scalable and dynamic monitoring and other characteristics. An information disclosure vulnerability exists in Apache Airflow AWS Provider versions prior to 7.2.1, which stems from a generated error message that contains sensitive information and can be exploited by an attacker to obtain sensitive information.

AI Score

6.1

Confidence

High

EPSS

0.001

Percentile

48.0%