VendorsApacheapache-airflow-providers-sftpall versions
Vulnerabilities

Apache Software Foundation Airflow SFTP Providers (apache-airflow-providers-sftp)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2026-50203
Apache Airflow SFTP provider: Path traversal in SFTPHook.retrieve_directory allows local file write outside the destination directory via malicious server-supplied directory-entry names
Published 2026-06-17 · Analyzed
9.1EPSS 0.009