VDB
CVE-2023-25692
CVE-2023-25692
PUBLISHED
CVSS 7.5 HIGH
Improper Input Validation vulnerability in the Apache Airflow Google Provider. This issue affects Apache Airflow Google Provider versions before 8.10.0.
EPSS 1.83% · 77.8th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.83%
77.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| apache | apache-airflow-providers-google | 0, 0, 0 |
| PyPI | apache-airflow-providers-google | 0, 0, 0 |
| Apache Software Foundation | Apache Airflow Google Provider | 0, 0 |
Timeline
- CVE Published
- Feb 24, 2023 PoC Published
- Feb 24, 2023 PoC Published
- Feb 24, 2023 PoC Published
- Feb 25, 2023 EPSS Score
- Apr 6, 2023 EPSS Score
- Apr 16, 2023 PoC Published
- Apr 16, 2023 PoC Published
- Jun 24, 2023 EPSS Score
- Aug 2, 2023 EPSS Score
- Oct 21, 2023 EPSS Score
- Jan 8, 2024 EPSS Score