Lucene search

K
cvelistApacheCVELIST:CVE-2020-17511
HistoryDec 14, 2020 - 9:40 a.m.

CVE-2020-17511

2020-12-1409:40:15
apache
www.cve.org

0.001 Low

EPSS

Percentile

29.5%

In Airflow versions prior to 1.10.13, when creating a user using airflow CLI, the password gets logged in plain text in the Log table in Airflow Metadatase. Same happened when creating a Connection with a password field.

CNA Affected

[
  {
    "product": "Apache Airflow",
    "vendor": "Apache Software Foundation",
    "versions": [
      {
        "lessThan": "1.10.13",
        "status": "affected",
        "version": "Apache Airflow",
        "versionType": "custom"
      }
    ]
  }
]

0.001 Low

EPSS

Percentile

29.5%

Related for CVELIST:CVE-2020-17511