CVE-2022-43985

apache/airflow
on github

Published

Severity

CVSS v3:
6.1 MEDIUM
CVSS v2:
N/A

Description

In Apache Airflow versions prior to 2.4.2, there was an open redirect in the webserver's `/confirm` endpoint.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:apache:airflow:*:*:*:*:*:*:*:*n/a2.4.2*

External Links