← Back to browse · API

CVE-2023-28706

Severity
CRITICAL
CVSS
9.8
EPSS
0.02765
Risk score
40.17
CISA KEV
No
PoC
No
Published
2023-04-07
Modified
2024-10-22
First seen
2026-08-07
Aliases
EUVD-2023-1206, GHSA-5CVG-9PP5-MXCJ, PYSEC-2026-271
Products
Apache Software Foundation:Apache Airflow Hive Provider 0 <6.0.0
Sources
euvd EUVD-2023-1206

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Software Foundation Apache Airflow Hive Provider.This issue affects Apache Airflow Hive Provider: before 6.0.0.

References