CVE-2023-25754
published 2023-05-08CVE-2023-25754: Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow.This issue affects Apache Airflow: before 2.6.0.
PriorityP352critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.28%
81.1th percentile
Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow.This issue affects Apache Airflow: before 2.6.0.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | airflow | < 2.6.0 | 2.6.0 |
| apache_software_foundation | apache_airflow | < 2.6.0 | 2.6.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2023-25754: Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow
osv·2023-05-08
CVE-2023-25754 CVE-2023-25754: Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow
Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow.This issue affects Apache Airflow: before 2.6.0.
OSV
Apache Airflow vulnerable to Privilege Context Switching Error
osv·2023-05-08
CVE-2023-25754 [CRITICAL] Apache Airflow vulnerable to Privilege Context Switching Error
Apache Airflow vulnerable to Privilege Context Switching Error
Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow. This issue affects Apache Airflow: before 2.6.0.
GHSA
Apache Airflow vulnerable to Privilege Context Switching Error
ghsa·2023-05-08
CVE-2023-25754 [CRITICAL] CWE-270 Apache Airflow vulnerable to Privilege Context Switching Error
Apache Airflow vulnerable to Privilege Context Switching Error
Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow. This issue affects Apache Airflow: before 2.6.0.
No detection rules found.
No public exploits indexed.
http://www.openwall.com/lists/oss-security/2023/05/08/2https://github.com/apache/airflow/pull/29506https://lists.apache.org/thread/3y83gr0qb8t49ppfk4fb2yk7md8ltq4vhttp://www.openwall.com/lists/oss-security/2023/05/08/2https://github.com/apache/airflow/pull/29506https://lists.apache.org/thread/3y83gr0qb8t49ppfk4fb2yk7md8ltq4v
2023-05-08
Published