| |
Vulnerability CVE-2023-37415
Published: 2023-07-13
| Description: |
Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Apache Hive Provider.
Patching on top of CVE-2023-35797
Before 6.1.2 the proxy_user option can also inject semicolon.
This issue affects Apache Airflow Apache Hive Provider: before 6.1.2.
It is recommended updating provider version to 6.1.2 in order to avoid this vulnerability.
|
Type:
CWE-20 (Improper Input Validation)
References: |
https://lists.apache.org/thread/9wx0jlckbnycjh8nj5qfwxo423zvm41k
|
|
|
closedb();
?>
Copyright 2026, cxsecurity.com
|
|
|