CVE-2022-38054

Publication date

2022-09-02 07:10:21

Family

apache

State

PUBLISHED

Description

In Apache Airflow versions 2.2.4 through 2.3.3, the `database` webserver session backend was susceptible to session fixation.