CVE-2022-41672

Publication date

2022-10-07 00:00:00

Family

apache

State

PUBLISHED

Description

In Apache Airflow, prior to version 2.4.1, deactivating a user wouldnt prevent an already authenticated user from being able to continue using the UI or API.