Apache Software Foundation Apache Airflow Providers MySQL 3.1.0

CPE Details

Apache Software Foundation Apache Airflow Providers MySQL 3.1.0
3.1.0
2023-05-22
11h27 +00:00
2023-05-22
12h30 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:apache:apache-airflow-providers-mysql:3.1.0:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

apache-airflow-providers-mysql

Version

3.1.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2025-27018 2025-03-19 09h06 +00:00 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Airflow MySQL Provider. When user triggered a DAG with dump_sql or load_sql functions they could pass a table parameter from a UI, that could cause SQL injection by running SQL that was not intended. It could lead to data corruption, modification and others. This issue affects Apache Airflow MySQL Provider: before 6.2.0. Users are recommended to upgrade to version 6.2.0, which fixes the issue.
6.3
Moyen
CVE-2023-22884 2023-01-21 13h02 +00:00 Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow, Apache Software Foundation Apache Airflow MySQL Provider.This issue affects Apache Airflow: before 2.5.1; Apache Airflow MySQL Provider: before 4.0.0.
9.8
Critique