Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities BSI Germany

[NEU] [hoch] Apache Airflow FAB provider: Schwachstelle ermöglicht Erlangen von Administratorrechten

A critical vulnerability (CVSS Base Score 9.1) in the Apache Airflow FAB provider allows an unauthenticated remote attacker to bypass security controls and gain administrator privileges. The flaw affects Apache Airflow FAB provider versions prior to 3.7.3. The mitigation is to upgrade to version 3.7.3.
Read Full Article →

Bitte melden Sie sich an Startseite Aktuelle Sicherheitshinweise CSAF Über CERT-Bund Fragen & Antworten [WID-SEC-2026-2551] Apache Airflow FAB provider: Schwachstelle ermöglicht Erlangen von Administratorrechten CVSS Base Score 9.1 (kritisch) CVSS Temporal Score 7.9 (hoch) Remoteangriff ja Datum 27.07.2026 Stand 28.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Produktbeschreibung Apache Airflow ist eine Plattform zur programmatischen Erstellung, Planung und Überwachung von Workflows. Produkte 27.07.2026 Apache Airflow FAB provider <3.7.3 Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Apache Airflow FAB provider ausnutzen, um Sicherheitsmaßnahmen zu umgehen und Administratorrechte zu erlangen. CVE Informationen Versionshistorie Feedback zum Advisory geben Angebote nach Zielgruppen Advisories für die Bundesverwaltung (Login erforderlich) Hinweise für andere Organisationen Technische Warnungen für Bürger Weitere Informationen Common Security Advisory Framework (CSAF) Über CERT-Bund Fragen & Antworten Service Impressum Datenschutz Nutzungsbedingungen

Share this article