Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.5
CVE-2018-20245
- EPSS 1.02%
- Veröffentlicht 23.01.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:01:09
The LDAP auth backend (airflow.contrib.auth.backends.ldap_auth) prior to Apache Airflow 1.10.1 was misconfigured and contained improper checking of exceptions which disabled server certificate checking.
6.1
CVE-2017-12614
- EPSS 2.02%
- Veröffentlicht 06.08.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:53
It was noticed an XSS in certain 404 pages that could be exploited to perform an XSS attack. Chrome will detect this as a reflected XSS attempt and prevent the page from loading. Firefox and other browsers don't, and are vulnerable to this attack. Mi...