by @jakaba
09 Aug 2023

SQL injection in Apache Airflow MySQL provider (CVE-2023-22884)

by @jakaba
09 Aug 2023

SQL injection in Apache Airflow MySQL provider (CVE-2023-22884)

CVEs

9.8 Critical Severity

Apps

A
AirflowApache
1.0.0:.*
2.0.0:.*
*.*
1.7.1.3.*
1.7.1.2.*
1.7.1.1.*
1.10.11.*
1.10.12.*
0.4.5.*
1.10.8.*
5.7.4.*
5.4.0.*
5.6.3.*
5.7.0.*
6.2.0.*
6.2.2.*
5.2.0.*
5.3.0.*
5.5.2.*
5.6.1.*

PoC video

Summary

In this CVE analysis I try to investigate a critical security flaw identified within Apache Airflow as **CVE-2023-22884**.

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

74 posts

Total vcoins

0

Social media links

Comments (0)