Security Advisory
CVE-2017-17835
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
In Apache Airflow 1.8.2 and earlier, a CSRF vulnerability allowed for a remote command injection on a default install of Airflow.