Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Taidh

#46939of 53,624
5.4Total CVSS
Vulnerabilities · 1
PT-2023-22222
5.4
2023-05-08
Apache · Apache Airflow · CVE-2023-29247
**Name of the Vulnerable Software and Affected Versions** Apache Airflow versions prior to 2.6.0 **Description** The task instance details page in the UI is vulnerable to a stored cross-site scripting (XSS) issue. This allows for malicious scripts to be stored and executed on the page. **Recommendations** For versions prior to 2.6.0, update to version 2.6.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the task instance details page in the UI until a patch is applied.