Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:45877
HistoryMar 15, 2024 - 7:58 p.m.

Authorization Bypass

2024-03-1519:58:58
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
apache airflow
authorization bypass
vulnerability
sensitive information exposure

AI Score

6.1

Confidence

High

EPSS

0

Percentile

15.5%

apache_airflow is vulnerable to an Authorization Bypass. The vulnerability is due improper permission checks which allows an authenticated user with limited permissions to access resources such as variables, connections, etc, from the UI which they do not have permission to access, resulting in sensitive information exposure.

AI Score

6.1

Confidence

High

EPSS

0

Percentile

15.5%