{"schema_version":1,"title":"apache-airflow (PyPI) vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 152 vulnerabilities in apache-airflow (PyPI): 0 in the last 7 days and 37 in the last 90 days, 7 of them critical and 2 exploited in the wild. The most recent, CVE-2026-68970, was published on 12 August 2026.","url":"https://junglewise.ai/threats/technologies/apache-airflow","json_url":"https://junglewise.ai/threats/technologies/apache-airflow.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/apache-airflow","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":18,"all_time":152,"critical":7,"exploited":2,"last_7_days":0,"last_30_days":0,"last_90_days":37,"last_365_days":73},"latest":[{"cve":"CVE-2026-68970","cvss":6.5,"epss":0.0039,"slug":"cve-2026-68970-apache-airflow-task-sdk-variable-masking-bypass-for-list-shaped","title":"Apache Airflow Task SDK variable masking bypass for list-shaped values","severity":"medium","exploited":false,"published_at":"2026-08-12T16:17:19.853+00:00","url":"https://junglewise.ai/threats/cve-2026-68970-apache-airflow-task-sdk-variable-masking-bypass-for-list-shaped"},{"cve":"CVE-2026-68969","cvss":6.5,"epss":0.0064,"slug":"cve-2026-68969-apache-airflow-information-disclosure-in-audit-logs","title":"Apache Airflow information disclosure in audit logs","severity":"medium","exploited":false,"published_at":"2026-08-12T16:17:19.73+00:00","url":"https://junglewise.ai/threats/cve-2026-68969-apache-airflow-information-disclosure-in-audit-logs"},{"cve":"CVE-2026-68968","cvss":7.5,"epss":0.0075,"slug":"cve-2026-68968-apache-airflow-backfill-api-authorization-bypass-via-type","title":"Apache Airflow Backfill API authorization bypass via type coercion mismatch","severity":"high","exploited":false,"published_at":"2026-08-12T16:17:19.607+00:00","url":"https://junglewise.ai/threats/cve-2026-68968-apache-airflow-backfill-api-authorization-bypass-via-type"},{"cve":"CVE-2026-68076","cvss":5.4,"epss":0.0062,"slug":"cve-2026-68076-apache-airflow-environment-variable-secrets-backend-team-scope","title":"Apache Airflow environment-variable secrets backend team-scope bypass","severity":"medium","exploited":false,"published_at":"2026-08-12T16:17:15.223+00:00","url":"https://junglewise.ai/threats/cve-2026-68076-apache-airflow-environment-variable-secrets-backend-team-scope"},{"cve":"CVE-2026-67587","cvss":8.8,"epss":0.0117,"slug":"cve-2026-67587-apache-airflow-arbitrary-module-import-via-deserialized-callback","title":"Apache Airflow arbitrary module import via deserialized callback","severity":"high","exploited":false,"published_at":"2026-08-12T16:17:15.09+00:00","url":"https://junglewise.ai/threats/cve-2026-67587-apache-airflow-arbitrary-module-import-via-deserialized-callback"},{"cve":"CVE-2026-67260","cvss":7.3,"epss":0.014,"slug":"cve-2026-67260-apache-airflow-unsafe-deserialization-in-awaiting-input-task","title":"Apache Airflow unsafe deserialization in awaiting_input task state","severity":"high","exploited":false,"published_at":"2026-08-12T16:17:14.813+00:00","url":"https://junglewise.ai/threats/cve-2026-67260-apache-airflow-unsafe-deserialization-in-awaiting-input-task"},{"cve":"CVE-2026-59244","cvss":6.5,"epss":0.0039,"slug":"cve-2026-59244-apache-airflow-secrets-exposure-in-rendered-templates-ui","title":"Apache Airflow secrets exposure in Rendered Templates UI","severity":"medium","exploited":false,"published_at":"2026-08-12T16:17:09.197+00:00","url":"https://junglewise.ai/threats/cve-2026-59244-apache-airflow-secrets-exposure-in-rendered-templates-ui"},{"cve":"CVE-2026-54183","cvss":4.3,"epss":0.0064,"slug":"cve-2026-54183-apache-airflow-secrets-masker-bypass-in-ui-display","title":"Apache Airflow secrets masker bypass in UI display","severity":"medium","exploited":false,"published_at":"2026-08-12T16:17:04.64+00:00","url":"https://junglewise.ai/threats/cve-2026-54183-apache-airflow-secrets-masker-bypass-in-ui-display"},{"cve":"CVE-2026-38743","cvss":3.1,"epss":0.0057,"slug":"cve-2026-38743-apache-airflow-s-authenticated-ui-dags-endpoint-did-not-enforce","title":"PYSEC-2026-2351 - Apache Airflow's authenticated /ui/dags endpoint did not enforce per-DAG access control on embedded Human-in-the-Loop (HITL) and TaskInstanc","severity":"low","exploited":false,"published_at":"2026-07-13T15:02:53.0048+00:00","url":"https://junglewise.ai/threats/cve-2026-38743-apache-airflow-s-authenticated-ui-dags-endpoint-did-not-enforce"},{"cve":"CVE-2026-40690","cvss":3.1,"epss":0.0057,"slug":"cve-2026-40690-apache-airflow-s-asset-dependency-graph-did-not-restrict-nodes-by","title":"PYSEC-2026-2356 - Apache Airflow's asset dependency graph did not restrict nodes by the viewer's DAG read permissions","severity":"low","exploited":false,"published_at":"2026-07-13T15:02:52.927197+00:00","url":"https://junglewise.ai/threats/cve-2026-40690-apache-airflow-s-asset-dependency-graph-did-not-restrict-nodes-by"},{"cve":"CVE-2026-32794","cvss":3.1,"epss":0.0043,"slug":"cve-2026-32794-apache-airflow-provider-for-databricks-tls-certificate","title":"PYSEC-2026-2357 - Apache Airflow Provider for Databricks: TLS Certificate Verification is Disabled in Databricks Provider K8s Token Exchange","severity":"low","exploited":false,"published_at":"2026-07-13T14:36:45.94951+00:00","url":"https://junglewise.ai/threats/cve-2026-32794-apache-airflow-provider-for-databricks-tls-certificate"},{"cve":"CVE-2024-56373","cvss":3.1,"epss":0.0106,"slug":"cve-2024-56373-apache-airflow-vulnerable-to-code-injection-in-the-web-server","title":"PYSEC-2026-2355 - Apache Airflow vulnerable to Code Injection in the web-server context via LogTemplate table","severity":"low","exploited":false,"published_at":"2026-07-13T14:36:37.846715+00:00","url":"https://junglewise.ai/threats/cve-2024-56373-apache-airflow-vulnerable-to-code-injection-in-the-web-server"},{"cve":"CVE-2025-27555","cvss":3.1,"epss":0.0037,"slug":"cve-2025-27555-apache-airflow-exposes-sensitive-information-in-its-log-files","title":"PYSEC-2026-2347 - Apache Airflow exposes sensitive information in its log files","severity":"low","exploited":false,"published_at":"2026-07-13T14:36:37.769247+00:00","url":"https://junglewise.ai/threats/cve-2025-27555-apache-airflow-exposes-sensitive-information-in-its-log-files"},{"cve":"CVE-2025-65995","cvss":3.1,"epss":0.0082,"slug":"cve-2025-65995-apache-airflow-error-reporting-may-expose-full-kwargs","title":"PYSEC-2026-2348 - Apache Airflow error reporting may expose full kwargs","severity":"low","exploited":false,"published_at":"2026-07-13T14:36:37.436591+00:00","url":"https://junglewise.ai/threats/cve-2025-65995-apache-airflow-error-reporting-may-expose-full-kwargs"},{"cve":"CVE-2023-51702","cvss":3.1,"epss":0.0039,"slug":"cve-2023-51702-apache-airflow-cncf-kubernetes-provider-apache-airflow-kubernetes","title":"PYSEC-2026-2350 - Apache Airflow CNCF Kubernetes provider, Apache Airflow: Kubernetes configuration file saved without encryption in the Metadata and logged a","severity":"low","exploited":false,"published_at":"2026-07-13T14:20:02.807354+00:00","url":"https://junglewise.ai/threats/cve-2023-51702-apache-airflow-cncf-kubernetes-provider-apache-airflow-kubernetes"},{"cve":"CVE-2023-46215","cvss":3.1,"epss":0.0121,"slug":"cve-2023-46215-apache-airflow-celery-provider-insertion-of-sensitive-information","title":"PYSEC-2026-2364 - Apache Airflow Celery provider Insertion of Sensitive Information into Log File vulnerability","severity":"low","exploited":false,"published_at":"2026-07-13T14:20:02.222981+00:00","url":"https://junglewise.ai/threats/cve-2023-46215-apache-airflow-celery-provider-insertion-of-sensitive-information"},{"cve":"CVE-2023-39441","cvss":3.1,"epss":0.008,"slug":"cve-2023-39441-apache-airflow-missing-certificate-validation","title":"PYSEC-2026-2368 - Apache Airflow missing Certificate Validation","severity":"low","exploited":false,"published_at":"2026-07-13T14:20:02.045262+00:00","url":"https://junglewise.ai/threats/cve-2023-39441-apache-airflow-missing-certificate-validation"},{"cve":"CVE-2025-62402","cvss":3.1,"epss":0.0049,"slug":"cve-2025-62402-apache-airflow-api-v2-dagreports-remote-code-execution","title":"PYSEC-2026-1129 - Apache Airflow `/api/v2/dagReports` executes DAG Python in API","severity":"low","exploited":false,"published_at":"2026-07-07T16:03:09.123674+00:00","url":"https://junglewise.ai/threats/cve-2025-62402-apache-airflow-api-v2-dagreports-remote-code-execution"},{"cve":"CVE-2025-54941","cvss":4,"epss":0.0046,"slug":"cve-2025-54941-apache-airflow-has-a-command-injection-vulnerability-in-example","title":"PYSEC-2026-1135 - Apache Airflow has a command injection vulnerability in \"example_dag_decorator\"","severity":"medium","exploited":false,"published_at":"2026-07-07T16:03:09.057395+00:00","url":"https://junglewise.ai/threats/cve-2025-54941-apache-airflow-has-a-command-injection-vulnerability-in-example"},{"cve":"CVE-2025-62503","cvss":3.1,"epss":0.0041,"slug":"cve-2025-62503-apache-airflow-s-create-action-can-upsert-existing-pools","title":"PYSEC-2026-1133 - Apache Airflow's create action can upsert existing Pools/Connections/Variables","severity":"low","exploited":false,"published_at":"2026-07-07T16:03:08.99894+00:00","url":"https://junglewise.ai/threats/cve-2025-62503-apache-airflow-s-create-action-can-upsert-existing-pools"},{"cve":"CVE-2024-45784","cvss":3.1,"epss":0.0134,"slug":"cve-2024-45784-apache-airflow-sensitive-configuration-values-are-not-masked-in","title":"PYSEC-2026-1112 - Apache Airflow: Sensitive configuration values are not masked in the logs by default","severity":"low","exploited":false,"published_at":"2026-07-07T14:34:44.590519+00:00","url":"https://junglewise.ai/threats/cve-2024-45784-apache-airflow-sensitive-configuration-values-are-not-masked-in"},{"cve":"CVE-2024-50378","cvss":3.1,"epss":0.0124,"slug":"cve-2024-50378-apache-airflow-vulnerable-to-insertion-of-sensitive-information","title":"PYSEC-2026-1134 - Apache Airflow vulnerable to Insertion of Sensitive Information Into Sent Data","severity":"low","exploited":false,"published_at":"2026-07-07T14:34:44.194631+00:00","url":"https://junglewise.ai/threats/cve-2024-50378-apache-airflow-vulnerable-to-insertion-of-sensitive-information"},{"cve":"CVE-2024-31869","cvss":3.1,"epss":0.0106,"slug":"cve-2024-31869-apache-airflow-sensitive-configuration-disclosure-in-ui","title":"PYSEC-2026-1128 - Apache Airflow: Sensitive configuration for providers displayed when \"non-sensitive-only\" config used","severity":"low","exploited":false,"published_at":"2026-07-07T11:45:39.544374+00:00","url":"https://junglewise.ai/threats/cve-2024-31869-apache-airflow-sensitive-configuration-disclosure-in-ui"},{"cve":"CVE-2024-29735","cvss":3.1,"epss":0.0146,"slug":"cve-2024-29735-apache-airflow-improper-preservation-of-permissions-vulnerability","title":"PYSEC-2026-1132 - Apache Airflow Improper Preservation of Permissions vulnerability","severity":"low","exploited":false,"published_at":"2026-07-07T11:45:36.686435+00:00","url":"https://junglewise.ai/threats/cve-2024-29735-apache-airflow-improper-preservation-of-permissions-vulnerability"},{"cve":"CVE-2023-39553","cvss":3.1,"epss":0.0228,"slug":"cve-2023-39553-apache-airflow-providers-apache-drill-improper-input-validation","title":"PYSEC-2026-1137 - apache-airflow-providers-apache-drill Improper Input Validation vulnerability","severity":"low","exploited":false,"published_at":"2026-07-07T11:45:22.484409+00:00","url":"https://junglewise.ai/threats/cve-2023-39553-apache-airflow-providers-apache-drill-improper-input-validation"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-07-06","critical":1,"exploited":0,"vulnerabilities":16},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":9},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":8},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"open-webui (PyPI)","slug":"open-webui","vulnerabilities":156,"url":"https://junglewise.ai/threats/technologies/open-webui"},{"name":"nltk (PyPI)","slug":"nltk","vulnerabilities":74,"url":"https://junglewise.ai/threats/technologies/nltk"},{"name":"picklescan (PyPI)","slug":"picklescan","vulnerabilities":74,"url":"https://junglewise.ai/threats/technologies/picklescan"},{"name":"openbabel (PyPI)","slug":"openbabel","vulnerabilities":48,"url":"https://junglewise.ai/threats/technologies/openbabel"},{"name":"apache-superset (PyPI)","slug":"apache-superset","vulnerabilities":44,"url":"https://junglewise.ai/threats/technologies/apache-superset"},{"name":"tensorflow-gpu (PyPI)","slug":"tensorflow-gpu","vulnerabilities":37,"url":"https://junglewise.ai/threats/technologies/tensorflow-gpu"},{"name":"tensorflow-cpu (PyPI)","slug":"tensorflow-cpu","vulnerabilities":34,"url":"https://junglewise.ai/threats/technologies/tensorflow-cpu"},{"name":"weblate (PyPI)","slug":"weblate","vulnerabilities":33,"url":"https://junglewise.ai/threats/technologies/weblate"},{"name":"mcp-atlassian (PyPI)","slug":"mcp-atlassian","vulnerabilities":30,"url":"https://junglewise.ai/threats/technologies/mcp-atlassian"},{"name":"crawl4ai (PyPI)","slug":"crawl4ai","vulnerabilities":28,"url":"https://junglewise.ai/threats/technologies/crawl4ai"},{"name":"moin (PyPI)","slug":"moin","vulnerabilities":28,"url":"https://junglewise.ai/threats/technologies/moin"},{"name":"opencv-contrib-python (PyPI)","slug":"opencv-contrib-python","vulnerabilities":24,"url":"https://junglewise.ai/threats/technologies/opencv-contrib-python"}],"technology":{"hub":true,"name":"apache-airflow (PyPI)","slug":"apache-airflow","vendor":{"name":"PyPI","slug":"pypi","url":"https://junglewise.ai/threats/vendors/pypi"},"aliases":[],"homepage":"https://airflow.apache.org/","repo_url":"https://github.com/apache/airflow","description":"A platform to programmatically author, schedule, and monitor workflows.","url":"https://junglewise.ai/threats/technologies/apache-airflow"},"most_severe":[{"cve":"CVE-2020-13927","cvss":3.1,"epss":0.9978,"slug":"cve-2020-13927-apache-airflow-s-experimental-api-authentication-bypass","title":"PYSEC-2020-18 - The previous default setting for Airflow's Experimental API was to allow all API requests without authentication, but this poses security ri","severity":"critical","exploited":true,"published_at":"2020-11-10T16:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-13927-apache-airflow-s-experimental-api-authentication-bypass"},{"cve":"CVE-2020-11978","cvss":3.1,"epss":0.9919,"slug":"cve-2020-11978-apache-airflow-command-injection","title":"PYSEC-2020-14 - An issue was found in Apache Airflow versions 1.10.10 and below. A remote code/command injection vulnerability was discovered in one of the","severity":"critical","exploited":true,"published_at":"2020-07-17T00:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-11978-apache-airflow-command-injection"},{"cve":"CVE-2023-25693","cvss":9.8,"epss":0.019,"slug":"cve-2023-25693-apache-airflow-sqoop-provider-improper-input-validation","title":"Apache Airflow Sqoop Provider improper input validation","severity":"critical","exploited":false,"published_at":"2023-02-24T12:31:20+00:00","url":"https://junglewise.ai/threats/cve-2023-25693-apache-airflow-sqoop-provider-improper-input-validation"},{"cve":"CVE-2026-33264","cvss":9.8,"epss":0.0165,"slug":"cve-2026-33264-apache-airflow-rce-via-deserialization-in-baseserialization","title":"Apache Airflow RCE via Deserialization in BaseSerialization","severity":"critical","exploited":false,"published_at":"2026-07-07T10:16:40.443+00:00","url":"https://junglewise.ai/threats/cve-2026-33264-apache-airflow-rce-via-deserialization-in-baseserialization"},{"cve":"CVE-2025-67895","cvss":9.8,"epss":0.01,"slug":"cve-2025-67895-apache-airflow-providers-edge3-rce-in-web-server-context","title":"Apache Airflow Providers Edge3 RCE in web server context","severity":"critical","exploited":false,"published_at":"2025-12-17T12:30:12+00:00","url":"https://junglewise.ai/threats/cve-2025-67895-apache-airflow-providers-edge3-rce-in-web-server-context"},{"cve":"CVE-2025-57735","cvss":9.1,"epss":0.0067,"slug":"cve-2025-57735-apache-airflow-insufficient-session-expiration-in-jwt-logout","title":"Apache Airflow insufficient session expiration in JWT logout","severity":"critical","exploited":false,"published_at":"2026-04-09T12:31:11+00:00","url":"https://junglewise.ai/threats/cve-2025-57735-apache-airflow-insufficient-session-expiration-in-jwt-logout"},{"cve":"CVE-2026-42252","cvss":9.1,"epss":0.0059,"slug":"cve-2026-42252-apache-airflow-command-injection-via-unsafe-documentation-example","title":"Apache Airflow command injection via unsafe documentation example","severity":"critical","exploited":false,"published_at":"2026-06-01T09:16:18.56+00:00","url":"https://junglewise.ai/threats/cve-2026-42252-apache-airflow-command-injection-via-unsafe-documentation-example"},{"cve":"CVE-2024-45498","cvss":8.8,"epss":0.0124,"slug":"cve-2024-45498-apache-airflow-command-execution-in-example-dags","title":"Apache Airflow command execution in example DAGs","severity":"high","exploited":false,"published_at":"2024-09-07T09:30:31+00:00","url":"https://junglewise.ai/threats/cve-2024-45498-apache-airflow-command-execution-in-example-dags"},{"cve":"CVE-2026-67587","cvss":8.8,"epss":0.0117,"slug":"cve-2026-67587-apache-airflow-arbitrary-module-import-via-deserialized-callback","title":"Apache Airflow arbitrary module import via deserialized callback","severity":"high","exploited":false,"published_at":"2026-08-12T16:17:15.09+00:00","url":"https://junglewise.ai/threats/cve-2026-67587-apache-airflow-arbitrary-module-import-via-deserialized-callback"},{"cve":"CVE-2026-33858","cvss":8.8,"epss":0.0106,"slug":"cve-2026-33858-apache-airflow-insecure-deserialization-in-xcom-api","title":"Apache Airflow insecure deserialization in XCom API","severity":"high","exploited":false,"published_at":"2026-04-13T15:17:33.343+00:00","url":"https://junglewise.ai/threats/cve-2026-33858-apache-airflow-insecure-deserialization-in-xcom-api"}],"generated_at":"2026-09-26T13:07:00.120236+00:00"}