Apache Airflow Hive Provider vulnerable to Command Injection
Critical severity
GitHub Reviewed
Published
Dec 20, 2022
to the GitHub Advisory Database
•
Updated Jan 28, 2023
Description
Published by the National Vulnerability Database
Dec 20, 2022
Published to the GitHub Advisory Database
Dec 20, 2022
Reviewed
Jan 4, 2023
Last updated
Jan 28, 2023
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow Hive Provider.This issue affects Apache Airflow Hive Provider before 5.0.0.
References