CVE Vulnerabilities

CVE-2023-25754

Privilege Context Switching Error

Published: May 08, 2023 | Modified: Feb 13, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Privilege Context Switching Error vulnerability in Apache Software Foundation Apache Airflow.This issue affects Apache Airflow: before 2.6.0.

Weakness

The product does not properly manage privileges while it is switching between different contexts that have different privileges or spheres of control.

Affected Software

NameVendorStart VersionEnd Version
AirflowApache*2.6.0 (excluding)

Potential Mitigations

References