cbcvebase.
CVE-2023-25956
published 2023-02-24

CVE-2023-25956: Generation of Error Message Containing Sensitive Information vulnerability in the Apache Airflow AWS Provider. This issue affects Apache Airflow AWS Provider…

PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
1.50%
71.4th percentile
Generation of Error Message Containing Sensitive Information vulnerability in the Apache Airflow AWS Provider. This issue affects Apache Airflow AWS Provider versions before 7.2.1.

Affected

3 ranges
VendorProductVersion rangeFixed in
apacheapache-airflow-providers-amazon< 7.2.17.2.1
apacheapache-airflow-providers-amazon>= 0 < 7.2.17.2.1
apache_software_foundationapache_airflow_aws_provider< 7.2.17.2.1
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.