Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow Hive Provider.This issue affects Apache Airflow Hive Provider: before 5.0.0.
References
Link | Resource |
---|---|
https://github.com/apache/airflow/pull/28101 | Patch Third Party Advisory |
https://lists.apache.org/thread/09twdoyoybldlfj5gvk0qswtofh0rmp4 | Mailing List Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apache
Published: 2022-12-20T10:20:39.431Z
Updated:
Reserved: 2022-12-04T22:42:18.098Z
Link: CVE-2022-46421
JSON object: View
NVD Information
Status : Modified
Published: 2022-12-20T11:15:09.977
Modified: 2023-11-07T03:55:37.200
Link: CVE-2022-46421
JSON object: View
Redhat Information
No data.
CWE