CVE-2026-30898
published 2026-04-18CVE-2026-30898: An example of BashOperator in Airflow documentation suggested a way of passing dag_run.conf in the way that could cause unsanitized user input to be used to…
PriorityP358high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
0.77%
51.3th percentile
An example of BashOperator in Airflow documentation suggested a way of passing dag_run.conf in the way that could cause unsanitized user input to be used to escalate privileges of UI user to allow execute code on worker. Users should review if any of their own DAGs have adopted this incorrect advice.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | airflow | < 3.2.0 | 3.2.0 |
| apache_software_foundation | apache_airflow | < 3.2.0 | 3.2.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6337-2587-f2jq: An example of BashOperator in Airflow documentation suggested a way of passing dag_run
ghsa_unreviewed·2026-04-18
CVE-2026-30898 CWE-77 GHSA-6337-2587-f2jq: An example of BashOperator in Airflow documentation suggested a way of passing dag_run
An example of BashOperator in Airflow documentation suggested a way of passing dag_run.conf in the way that could cause unsanitized user input to be used to escalate privileges of UI user to allow execute code on worker. Users should review if any of their own DAGs have adopted this incorrect advice.
VulDB
Apache Airflow up to 3.1.x BashOperator dag_run.conf injection
vuldb·2026-04-17
CVE-2026-30898 [CRITICAL] Apache Airflow up to 3.1.x BashOperator dag_run.conf injection
A vulnerability labeled as critical has been found in Apache Airflow up to 3.1.x. Affected is an unknown function of the file dag_run.conf of the component BashOperator. Executing a manipulation can lead to injection.
This vulnerability is registered as CVE-2026-30898. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-04-18
Published