Security Advisory

CVE-2024-28423

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-14 00:00:00
Last updated 2024-08-27 20:13:27
Assigner mitre
State PUBLISHED

Description

Airflow-Diagrams v2.1.0 was discovered to contain an arbitrary file upload vulnerability in the unsafe_load function at cli.py. This vulnerability allows attackers to execute arbitrary code via uploading a crafted YML file.