CISA Known Exploited Vulnerability

CVE-2020-11978

Apache · Airflow

Apache Airflow Command Injection

Date added
BOD 22-01 due date
CWE CWE-78
Ransomware Unknown

CISA description

A remote code/command injection vulnerability was discovered in one of the example DAGs shipped with Airflow.

Required action

Apply updates per vendor instructions.