CVE-2023-25956

Generation of Error Message Containing Sensitive Information vulnerability in the Apache Airflow AWS Provider. This issue affects Apache Airflow AWS Provider versions before 7.2.1.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:apache-airflow-providers-amazon:*:*:*:*:*:*:*:*

History

07 Nov 2023, 04:09

Type Values Removed Values Added
Summary Generation of Error Message Containing Sensitive Information vulnerability in the Apache Airflow AWS Provider. This issue affects Apache Airflow AWS Provider versions before 7.2.1. Generation of Error Message Containing Sensitive Information vulnerability in the Apache Airflow AWS Provider. This issue affects Apache Airflow AWS Provider versions before 7.2.1.

06 Mar 2023, 16:38

Type Values Removed Values Added
References (MISC) https://github.com/apache/airflow/pull/29587 - (MISC) https://github.com/apache/airflow/pull/29587 - Patch
References (MISC) https://lists.apache.org/thread/07pl9y4gdpw2c6rzqm77dvkm2z2kb5gv - (MISC) https://lists.apache.org/thread/07pl9y4gdpw2c6rzqm77dvkm2z2kb5gv - Mailing List, Vendor Advisory
CPE cpe:2.3:a:apache:apache-airflow-providers-amazon:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Apache apache-airflow-providers-amazon
Apache

24 Feb 2023, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-24 12:15

Updated : 2023-12-10 14:48


NVD link : CVE-2023-25956

Mitre link : CVE-2023-25956

CVE.ORG link : CVE-2023-25956


JSON object : View

Products Affected

apache

  • apache-airflow-providers-amazon
CWE
CWE-209

Generation of Error Message Containing Sensitive Information