protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the “type” fields of protobuf definitions, which will then execute during object decoding...
The Keycloak authentication manager in `apache-airflow-providers-keycloak` did not generate or validate the OAuth 2.0 `state` parameter on the login / login-callback flow, and did not use PKCE. An attacker with a Keycloak account in...
The Contextual Related Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘other_attributes’ parameter in versions up to, and including, 4.2.1 due to insufficient input sanitization and output escaping. This makes...
The Content Blocks (Custom Post Widget) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s content_block shortcode in all versions up to, and including, 3.3.9 due to insufficient input sanitization and...
The Categories Images plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.3.1, via the ‘z_taxonomy_image’ shortcode. This is due to the shortcode rendering path passing attacker-controlled class...
An example of BashOperator in Airflow documentation suggested a way of passing dag_run.conf in the way that could cause unsanitized user input to be used to escalate privileges of UI user to allow execute...
In case of SQL errors, exception/stack trace of errors was exposed in API even if “api/expose_stack_traces” was set to false. That could lead to exposing additional information to potential attacker. Users are recommended to...
UI / API User with asset materialize permission could trigger dags they had no access to. Users are advised to migrate to Airflow version 3.2.0 that fixes the issue. More information : https://github.com/apache/airflow/pull/63338
Secrets in Variables saved as JSON dictionaries were not properly redacted – in case thee variables were retrieved by the user the secrets stored as nested fields were not masked. If you do not...
Dag Authors, who normally should not be able to execute code in the webserver context could craft XCom payload causing the webserver to execute arbitrary code. Since Dag Authors are already highly trusted, severity...
In iTerm2 through 3.6.9, displaying a .txt file can cause code execution via DCS 2000p and OSC 135 data, if the working directory contains a malicious file whose name is valid output from the...
The CMP – Coming Soon & Maintenance Plugin by NiteoThemes plugin for WordPress is vulnerable to arbitrary file upload and remote code execution in all versions up to, and including, 4.1.16 via the `cmp_theme_update_install`...
The Flipbox Addon for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Flipbox widget’s button URL `custom_attributes` field in all versions up to, and including, 2.1.1 due to insufficient validation...
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.