CISA description
A remote code/command injection vulnerability was discovered in one of the example DAGs shipped with Airflow.
Apache · Airflow
Apache Airflow Command Injection
A remote code/command injection vulnerability was discovered in one of the example DAGs shipped with Airflow.
Apply updates per vendor instructions.
Vulnerability data triggers these controls during assessment and continuous monitoring.