Known vulnerabilities in Apache Airflow Hive Provider

Software CPE: cpe:2.3:a:apache_foundation:apache-airflow-providers-apache-hive:*:*:*:*:*:apache_airflow:*:*
Total vulnerabilities: 6
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Apache Airflow Hive Provider Apache Airflow Hive Provider is affected by 6 known vulnerabilities: 5 high, 1 medium Critical High Medium Low

Vulnerabilities (6)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU86034 - Command injection
CVE-2023-37415
CWE-77 High
No
No
6.1.2 02.02.2024 SB2023071294
#VU78004 - Command injection
CVE-2023-35797
CWE-77 Medium
No
No
6.1.1 05.07.2023 SB2023070542
#VU74607 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-28706
CWE-94 High
No
No
6.0.0 10.04.2023 SB2023041011
#VU72532 - Improper input validation
CVE-2023-25696
CWE-20 High
No
No
5.1.3 23.02.2023 SB2023022354
#VU70452 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-46421
CWE-78 High
No
No
5.0.0 20.12.2022 SB2022122016
#VU69476 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-41131
CWE-78 High
No
No
4.1.0 22.11.2022 SB2022112212