VendorsApacheairflowany version
Vulnerabilities

Apache Airflow any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

150CVEs
CVE-2025-68675
Apache Airflow: proxy credentials for various providers might leak in task logs
Published 2026-01-16 · Modified
7.5EPSS 0.020
CVE-2022-27949
Apache Airflow prior to 2.3.1 may include sensitive values in rendered template
Published 2022-11-14 · Modified
7.5EPSS 0.019
CVE-2024-45784
Apache Airflow: Sensitive configuration values are not masked in the logs by default
Published 2024-11-15 · Analyzed
7.5EPSS 0.013
CVE-2023-50943
Apache Airflow: Potential pickle deserialization vulnerability in XComs
Published 2024-01-24 · Modified
7.5EPSS 0.012
CVE-2023-46215
Apache Airflow Celery provider, Apache Airflow: Sensitive information logged as clear text when rediss, amqp, rpc protocols are used as Celery result backend
Published 2023-10-28 · Modified
7.5EPSS 0.012
CVE-2018-20245
The LDAP auth backend (airflow.contrib.auth.backends.ldap_auth) prior to Apache Airflow 1.10.1 was misconfigured and contained improper checking of exceptions which disabled server certificate checking.
Published 2019-01-23 · Modified
7.5EPSS 0.010
CVE-2026-31987
Apache Airflow: JWT token appearing in logs
Published 2026-04-16 · Analyzed
7.5EPSS 0.007
CVE-2026-28779
Apache Airflow: Path of session token in cookie does not consider base_url - session hijacking via co-hosted applications
Published 2026-03-17 · Analyzed
7.5EPSS 0.007
CVE-2025-68438
Apache Airflow: Secrets in rendered templates could contain parts of sensitive values when truncated
Published 2026-01-16 · Analyzed
7.5EPSS 0.007
CVE-2026-41084
Apache Airflow: API authorization bypass: bulk TaskInstances allows cross-DAG mutation
Published 2026-06-01 · Analyzed
7.5EPSS 0.005
CVE-2026-30912
Apache Airflow: Exposing stack trace in case of constraint error
Published 2026-04-18 · Analyzed
7.5EPSS 0.004
CVE-2025-66236
Apache Airflow: Secrets from Airflow config file logged in plain text in DAG run logs UI
Published 2026-04-13 · Analyzed
7.5EPSS 0.004
CVE-2026-32228
Apache Airflow: Users with asset materialization permisssions could trigger Dags they had no access to
Published 2026-04-18 · Analyzed
7.5EPSS 0.004
CVE-2026-68968
Apache Airflow: Authorization bypass in the Backfill API through conflicting interpretations of the backfill id
Published 2026-08-12 · Analyzed
7.5EPSS 0.004
CVE-2026-67260
Apache Airflow: DAG-author remote code execution on the Scheduler via awaiting_input next_kwargs deserialization
Published 2026-08-12 · Analyzed
7.3EPSS 0.008
CVE-2026-45360
Apache Airflow: Arbitrary import in custom deadline-reference deserialization
Published 2026-06-01 · Analyzed
7.3EPSS 0.007
CVE-2026-25917
Apache Airflow: API extra-links triggers XCom deserialization/class instantiation (Airflow 3.1.5)
Published 2026-04-18 · Modified
7.2EPSS 0.008
CVE-2026-40961
Apache Airflow: Open Redirect Bypass Vulnerability
Published 2026-06-01 · Analyzed
7.2EPSS 0.006
CVE-2020-17511
In Airflow versions prior to 1.10.13, when creating a user using airflow CLI, the password gets logged in plain text in the Log table in Airflow Metadatase. Same happened when creating a Connection with a password field.
Published 2020-12-14 · Modified
6.5EPSS 0.026
CVE-2023-40712
Apache Airflow: Secrets can be unmasked in the "Rendered Template"
Published 2023-09-12 · Modified
6.5EPSS 0.020
CVE-2023-22887
Apache Airflow path traversal by authenticated user
Published 2023-07-12 · Modified
6.5EPSS 0.018
CVE-2021-45230
Apache Airflow: Creating DagRuns didn't respect Dag-level permissions in the Webserver
Published 2022-01-20 · Modified
6.5EPSS 0.017
CVE-2023-42781
Apache Airflow: Permission verification bypass allows viewing dagruns of other dags
Published 2023-11-12 · Modified
6.5EPSS 0.017
CVE-2023-36543
Apache Airflow: ReDoS via dags function
Published 2023-07-12 · Modified
6.5EPSS 0.016
CVE-2023-42663
Apache Airflow: Bypass permission verification to view task instances of other dags
Published 2023-10-14 · Modified
6.5EPSS 0.016
CVE-2023-35005
Apache Airflow: Information disclosure on configuration view
Published 2023-06-19 · Modified
6.5EPSS 0.015
CVE-2023-42792
Apache Airflow: Improper access control to DAG resources
Published 2023-10-14 · Modified
6.5EPSS 0.014
CVE-2023-22888
Apache Airflow: Scheduler remote DoS
Published 2023-07-12 · Modified
6.5EPSS 0.014
CVE-2023-50783
Apache Airflow: Improper access control vulnerability on the "varimport" endpoint
Published 2023-12-21 · Modified
6.5EPSS 0.014
CVE-2022-46651
Apache Airflow: Security vulnerability on AirFlow Connections
Published 2023-07-12 · Modified
6.5EPSS 0.012
CVE-2023-42780
Apache Airflow: Improper access control vulnerability in the "List dag warnings" feature
Published 2023-10-14 · Modified
6.5EPSS 0.011
CVE-2023-49920
Apache Airflow: Missing CSRF protection on DAG/trigger
Published 2023-12-21 · Modified
6.5EPSS 0.010
CVE-2023-35908
Apache Airflow: Access to DAGs without relevant permission
Published 2023-07-12 · Modified
6.5EPSS 0.010
CVE-2023-50944
Apache Airflow: Bypass permission verification to read code of other dags
Published 2024-01-24 · Modified
6.5EPSS 0.010
CVE-2025-65995
Apache Airflow: Disclosure of secrets to UI via kwargs
Published 2026-02-21 · Analyzed
6.5EPSS 0.008
CVE-2026-24098
Apache Airflow: Assigning single DAG permission leaked all DAGs Import Errors
Published 2026-02-09 · Analyzed
6.5EPSS 0.008
CVE-2026-40861
Apache Airflow: Arbitrary File Read via Log Symlink following in FileTaskHandler
Published 2026-06-01 · Analyzed
6.5EPSS 0.007
CVE-2026-34538
Apache Airflow: Authorization bypass in DagRun wait endpoint (XCom exposure)
Published 2026-04-09 · Analyzed
6.5EPSS 0.007
CVE-2026-49487
Apache Airflow: Task-instance API exposes secrets in deferred trigger kwargs
Published 2026-07-07 · Analyzed
6.5EPSS 0.007
CVE-2026-48892
Apache Airflow: Config API leaks per-key secrets backend kwargs - masker bypass on synthetic options
Published 2026-07-07 · Analyzed
6.5EPSS 0.007
← Prev2 / 4Next →