Security Advisory

CVE-2021-45229

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-25 08:30:15
Last updated 2024-08-04 04:39:20
Assigner apache
State PUBLISHED

Description

It was discovered that the "Trigger DAG with config" screen was susceptible to XSS attacks via the `origin` query argument. This issue affects Apache Airflow versions 2.2.3 and below.