Apache Software Foundation Apache-airflow-providers-apache-spark (Apache Airflow Spark Provider) 4.0.0

CPE Details

Apache Software Foundation Apache-airflow-providers-apache-spark (Apache Airflow Spark Provider) 4.0.0
4.0.0
2022-11-28
13h31 +00:00
2022-11-28
16h36 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:apache:apache-airflow-providers-apache-spark:4.0.0:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

apache-airflow-providers-apache-spark

Version

4.0.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-40272 2023-08-17 13h52 +00:00 Apache Airflow Spark Provider, versions before 4.1.3, is affected by a vulnerability that allows an attacker to pass in malicious parameters when establishing a connection giving an opportunity to read files on the Airflow server. It is recommended to upgrade to a version that is not affected.
7.5
High
CVE-2023-28710 2023-04-07 14h55 +00:00 Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Spark Provider.This issue affects Apache Airflow Spark Provider: before 4.0.1.
7.5
High