CVE-2023-28710

Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Spark Provider.This issue affects Apache Airflow Spark Provider: before 4.0.1.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:apache-airflow-providers-apache-spark:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:55

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2023/04/07/3 - Mailing List, Third Party Advisory () http://www.openwall.com/lists/oss-security/2023/04/07/3 - Mailing List, Third Party Advisory
References () https://github.com/apache/airflow/pull/30223 - Vendor Advisory () https://github.com/apache/airflow/pull/30223 - Vendor Advisory
References () https://lists.apache.org/thread/lb9w9114ow00h2nkn8bjm106v5x1p1d2 - Mailing List, Vendor Advisory () https://lists.apache.org/thread/lb9w9114ow00h2nkn8bjm106v5x1p1d2 - Mailing List, Vendor Advisory

22 May 2023, 14:27

Type Values Removed Values Added
CPE cpe:2.3:a:apache:airflow_spark_provider:*:*:*:*:*:*:*:* cpe:2.3:a:apache:apache-airflow-providers-apache-spark:*:*:*:*:*:*:*:*
First Time Apache apache-airflow-providers-apache-spark

13 Apr 2023, 19:40

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Apache
Apache airflow Spark Provider
CPE cpe:2.3:a:apache:airflow_spark_provider:*:*:*:*:*:*:*:*
References (MISC) https://lists.apache.org/thread/lb9w9114ow00h2nkn8bjm106v5x1p1d2 - (MISC) https://lists.apache.org/thread/lb9w9114ow00h2nkn8bjm106v5x1p1d2 - Mailing List, Vendor Advisory
References (MISC) https://github.com/apache/airflow/pull/30223 - (MISC) https://github.com/apache/airflow/pull/30223 - Vendor Advisory
References (MISC) http://www.openwall.com/lists/oss-security/2023/04/07/3 - (MISC) http://www.openwall.com/lists/oss-security/2023/04/07/3 - Mailing List, Third Party Advisory

07 Apr 2023, 18:15

Type Values Removed Values Added
Summary Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Spark Provider.This issue affects Apache Airflow Spark Provider: before 4.0.1. Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Spark Provider.This issue affects Apache Airflow Spark Provider: before 4.0.1.
References
  • (MISC) http://www.openwall.com/lists/oss-security/2023/04/07/3 -

07 Apr 2023, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-07 15:15

Updated : 2024-11-21 07:55


NVD link : CVE-2023-28710

Mitre link : CVE-2023-28710

CVE.ORG link : CVE-2023-28710


JSON object : View

Products Affected

apache

  • apache-airflow-providers-apache-spark
CWE
CWE-20

Improper Input Validation