{"schema_version":1,"title":"apache-airflow-providers-amazon (PyPI) vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 4 vulnerabilities in apache-airflow-providers-amazon (PyPI): 0 in the last 7 days and 2 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-68872, was published on 10 August 2026.","url":"https://junglewise.ai/threats/technologies/apache-airflow-providers-amazon","json_url":"https://junglewise.ai/threats/technologies/apache-airflow-providers-amazon.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/apache-airflow-providers-amazon","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":0,"all_time":4,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":2,"last_365_days":4},"latest":[{"cve":"CVE-2026-68872","cvss":3.1,"epss":0.006,"slug":"cve-2026-68872-pysec-2026-3713-the-aws-systems-manager-parameter-store-and","title":"PYSEC-2026-3713 - The AWS Systems Manager Parameter Store and Secrets Manager backends in Apache Airflow's Amazon provider resolved a team-scoped Connection o","severity":"low","exploited":false,"published_at":"2026-08-10T19:17:30.587+00:00","url":"https://junglewise.ai/threats/cve-2026-68872-pysec-2026-3713-the-aws-systems-manager-parameter-store-and"},{"cve":"CVE-2023-25956","cvss":3.1,"epss":0.015,"slug":"cve-2023-25956-apache-airflow-aws-provider-generates-error-message-containing","title":"PYSEC-2026-771 - Apache Airflow AWS Provider Generates Error Message Containing Sensitive Information","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:27.97558+00:00","url":"https://junglewise.ai/threats/cve-2023-25956-apache-airflow-aws-provider-generates-error-message-containing"},{"cve":"CVE-2026-42526","cvss":5.3,"epss":0.0054,"slug":"cve-2026-42526-apache-airflow-amazon-provider-incorrect-authorization-in-secrets","title":"Apache Airflow Amazon provider incorrect authorization in secrets backends","severity":"medium","exploited":false,"published_at":"2026-05-19T20:16:19.163+00:00","url":"https://junglewise.ai/threats/cve-2026-42526-apache-airflow-amazon-provider-incorrect-authorization-in-secrets"},{"cve":"CVE-2026-25604","cvss":5.4,"epss":0.0051,"slug":"cve-2026-25604-apache-airflow-aws-auth-manager-saml-authentication-bypass","title":"Apache Airflow AWS Auth Manager SAML authentication bypass","severity":"medium","exploited":false,"published_at":"2026-03-09T11:16:06.077+00:00","url":"https://junglewise.ai/threats/cve-2026-25604-apache-airflow-aws-auth-manager-saml-authentication-bypass"}],"weekly":[{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-28","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"tensorflow (PyPI)","slug":"pypi-tensorflow","vulnerabilities":428,"url":"https://junglewise.ai/threats/technologies/pypi-tensorflow"},{"name":"tensorflow-cpu (PyPI)","slug":"tensorflow-cpu","vulnerabilities":424,"url":"https://junglewise.ai/threats/technologies/tensorflow-cpu"},{"name":"tensorflow-gpu (PyPI)","slug":"tensorflow-gpu","vulnerabilities":421,"url":"https://junglewise.ai/threats/technologies/tensorflow-gpu"},{"name":"open-webui (PyPI)","slug":"open-webui","vulnerabilities":177,"url":"https://junglewise.ai/threats/technologies/open-webui"},{"name":"Django (PyPI)","slug":"django","vulnerabilities":172,"url":"https://junglewise.ai/threats/technologies/django"},{"name":"apache-airflow (PyPI)","slug":"apache-airflow","vulnerabilities":152,"url":"https://junglewise.ai/threats/technologies/apache-airflow"},{"name":"plone (PyPI)","slug":"pypi-plone","vulnerabilities":101,"url":"https://junglewise.ai/threats/technologies/pypi-plone"},{"name":"praisonai (PyPI)","slug":"pypi-praisonai","vulnerabilities":86,"url":"https://junglewise.ai/threats/technologies/pypi-praisonai"},{"name":"exiv2 (PyPI)","slug":"exiv2","vulnerabilities":85,"url":"https://junglewise.ai/threats/technologies/exiv2"},{"name":"nltk (PyPI)","slug":"nltk","vulnerabilities":83,"url":"https://junglewise.ai/threats/technologies/nltk"},{"name":"mlflow (PyPI)","slug":"mlflow","vulnerabilities":82,"url":"https://junglewise.ai/threats/technologies/mlflow"},{"name":"pillow (PyPI)","slug":"pillow","vulnerabilities":79,"url":"https://junglewise.ai/threats/technologies/pillow"}],"technology":{"hub":true,"name":"apache-airflow-providers-amazon (PyPI)","slug":"apache-airflow-providers-amazon","vendor":{"name":"PyPI","slug":"pypi","url":"https://junglewise.ai/threats/vendors/pypi"},"aliases":[],"homepage":"https://airflow.apache.org/docs/apache-airflow-providers-amazon/stable/index.html","repo_url":"https://github.com/apache/airflow/tree/main/airflow/providers/amazon","description":"An Apache Airflow provider package for interacting with Amazon Web Services.","url":"https://junglewise.ai/threats/technologies/apache-airflow-providers-amazon"},"most_severe":[{"cve":"CVE-2026-25604","cvss":5.4,"epss":0.0051,"slug":"cve-2026-25604-apache-airflow-aws-auth-manager-saml-authentication-bypass","title":"Apache Airflow AWS Auth Manager SAML authentication bypass","severity":"medium","exploited":false,"published_at":"2026-03-09T11:16:06.077+00:00","url":"https://junglewise.ai/threats/cve-2026-25604-apache-airflow-aws-auth-manager-saml-authentication-bypass"},{"cve":"CVE-2026-42526","cvss":5.3,"epss":0.0054,"slug":"cve-2026-42526-apache-airflow-amazon-provider-incorrect-authorization-in-secrets","title":"Apache Airflow Amazon provider incorrect authorization in secrets backends","severity":"medium","exploited":false,"published_at":"2026-05-19T20:16:19.163+00:00","url":"https://junglewise.ai/threats/cve-2026-42526-apache-airflow-amazon-provider-incorrect-authorization-in-secrets"},{"cve":"CVE-2023-25956","cvss":3.1,"epss":0.015,"slug":"cve-2023-25956-apache-airflow-aws-provider-generates-error-message-containing","title":"PYSEC-2026-771 - Apache Airflow AWS Provider Generates Error Message Containing Sensitive Information","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:27.97558+00:00","url":"https://junglewise.ai/threats/cve-2023-25956-apache-airflow-aws-provider-generates-error-message-containing"},{"cve":"CVE-2026-68872","cvss":3.1,"epss":0.006,"slug":"cve-2026-68872-pysec-2026-3713-the-aws-systems-manager-parameter-store-and","title":"PYSEC-2026-3713 - The AWS Systems Manager Parameter Store and Secrets Manager backends in Apache Airflow's Amazon provider resolved a team-scoped Connection o","severity":"low","exploited":false,"published_at":"2026-08-10T19:17:30.587+00:00","url":"https://junglewise.ai/threats/cve-2026-68872-pysec-2026-3713-the-aws-systems-manager-parameter-store-and"}],"generated_at":"2026-09-28T03:07:00.154823+00:00"}