CVE-2023-25696Improper Input Validation in Software Foundation Apache Airflow Hive Provider

Severity
9.8CRITICALNVD
EPSS
4.2%
top 11.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 24

Description

Improper Input Validation vulnerability in the Apache Airflow Hive Provider. This issue affects Apache Airflow Hive Provider versions before 5.1.3.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Patches

🔴Vulnerability Details

3
GHSA
Apache Airflow Hive Provider Improper Input Validation vulnerability2023-02-24
CVEList
Apache Airflow Hive Provider Beeline RCE2023-02-24
OSV
Apache Airflow Hive Provider Improper Input Validation vulnerability2023-02-24
CVE-2023-25696 — Improper Input Validation | cvebase