wiz-sec / open-cvdb

An open project to list all publicly known cloud vulnerabilities and CSP security issues
https://cloudvulndb.org
Creative Commons Attribution 4.0 International
303 stars 61 forks source link

[Contribution] ApatchMe #252

Closed ramimac closed 4 months ago

ramimac commented 10 months ago

Summary (give a brief description of the issue)

AWS and Google Composer managed Apache Airflow services were vulnerable to CVE-2023-29247 (Stored XSS)

References (provide links to blogposts, etc.)

https://www.tenable.com/blog/apatchme-authenticated-stored-xss-vulnerability-in-aws-and-gcp-apache-airflow-services