Known vulnerabilities in Apache Airflow MySQL Provider
Vendor:
Apache Foundation
Software:
Apache Airflow MySQL Provider
Software CPE:
cpe:2.3:a:apache_foundation:apache_airflow_mysql_provider:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
2
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
6.6.1
6.6.1rc1
6.6.0
6.6.0rc1
6.5.3
6.5.3rc1
6.5.2rc1
6.5.2
6.5.1
6.5.1rc1
6.3.5
6.3.4
6.3.3
6.3.2
6.3.0
6.2.2
6.1.0
6.0.0
5.7.4
5.7.3
5.7.2
5.7.1
5.7.0
5.6.3
5.6.2
5.6.1
5.6.0
6.5.0rc1
6.5.0
6.4.3rc1
6.4.3
6.4.2rc1
6.4.2
6.4.1rc1
6.4.1
6.4.0rc1
6.4.0
6.3.5rc1
6.3.4rc1
6.3.3rc1
6.3.2rc1
6.3.1rc1
6.3.1
6.3.0rc1
6.2.2rc1
6.2.1rc1
6.2.1
6.2.0
6.2.0rc1
6.1.0rc1
6.0.0rc2
6.0.0rc1
5.7.4rc1
5.7.3rc1
5.7.2rc1
5.7.1rc1
5.7.0rc1
5.6.3rc1
5.6.2rc1
5.6.1rc1
5.6.0rc1
5.5.4
5.5.4rc1
5.5.3
5.5.3rc1
5.5.2
5.5.2rc2
5.5.2rc1
5.5.1
5.5.1rc1
5.5.0
5.5.0rc1
5.4.0
5.4.0rc1
5.3.1
5.3.1rc1
5.3.0
5.3.0rc1
5.2.1
5.2.1rc1
5.2.0
5.2.0rc1
5.1.1
5.1.1rc1
5.1.0
5.1.0rc2
5.1.0rc1
5.0.0
5.0.0rc1
4.0.2
4.0.2rc1
4.0.1
4.0.1rc1
4.0.0
4.0.0rc1
3.4.0rc3
3.4.0rc2
3.4.0
3.3.0rc1
3.3.0
3.2.1rc1
3.2.1
3.2.0rc3
3.2.0rc2
3.2.0rc1
3.2.0
3.1.0rc1
3.1.0
3.0.0rc2
3.0.0rc1
3.0.0
2.2.3rc1
2.2.3
2.2.2rc1
2.2.2
2.2.1rc1
2.2.1
2.2.0rc2
2.2.0rc1
2.2.0
2.1.1rc1
2.1.1
2.1.0rc2
2.1.0rc1
2.1.0
2.0.0rc2
2.0.0rc1
2.0.0
1.1.0rc1
1.1.0
1.0.2rc1
1.0.2
1.0.1rc1
1.0.1
1.0.0rc1
1.0.0b2
1.0.0b1
1.0.0
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU106092 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2025-27018 |
CWE-89 | Medium | 6.2.0 | 27.03.2025 |
SB2025032716 |
||
| #VU71413 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2023-22884 |
CWE-78 | High | 4.0.0 | 22.01.2023 |
SB2023012217 |