Vulnerability Details CVE-2023-50783
Apache Airflow, versions before 2.8.0, is affected by a vulnerability that allows an authenticated user without the variable edit permission, to update a variable.
This flaw compromises the integrity of variable management, potentially leading to unauthorized data modification.
Users are recommended to upgrade to 2.8.0, which fixes this issue
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.1%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2023-50783
-
cpe:2.3:a:apache:airflow:-
-
cpe:2.3:a:apache:airflow:0.1
-
cpe:2.3:a:apache:airflow:0.2
-
cpe:2.3:a:apache:airflow:0.2.1
-
cpe:2.3:a:apache:airflow:0.2.2
-
cpe:2.3:a:apache:airflow:0.2.3
-
cpe:2.3:a:apache:airflow:0.3
-
cpe:2.3:a:apache:airflow:0.3.1
-
cpe:2.3:a:apache:airflow:0.3.2
-
cpe:2.3:a:apache:airflow:0.4
-
cpe:2.3:a:apache:airflow:0.4.1
-
cpe:2.3:a:apache:airflow:0.4.2
-
cpe:2.3:a:apache:airflow:0.4.3
-
cpe:2.3:a:apache:airflow:0.4.5
-
cpe:2.3:a:apache:airflow:0.4.6
-
cpe:2.3:a:apache:airflow:0.5.0
-
cpe:2.3:a:apache:airflow:1.0.0
-
cpe:2.3:a:apache:airflow:1.0.1
-
cpe:2.3:a:apache:airflow:1.1.0
-
cpe:2.3:a:apache:airflow:1.1.1
-
cpe:2.3:a:apache:airflow:1.10.0
-
cpe:2.3:a:apache:airflow:1.10.1
-
cpe:2.3:a:apache:airflow:1.10.10
-
cpe:2.3:a:apache:airflow:1.10.11
-
cpe:2.3:a:apache:airflow:1.10.12
-
cpe:2.3:a:apache:airflow:1.10.13
-
cpe:2.3:a:apache:airflow:1.10.14
-
cpe:2.3:a:apache:airflow:1.10.15
-
cpe:2.3:a:apache:airflow:1.10.2
-
cpe:2.3:a:apache:airflow:1.10.5
-
cpe:2.3:a:apache:airflow:1.10.6
-
cpe:2.3:a:apache:airflow:1.10.7
-
cpe:2.3:a:apache:airflow:1.10.8
-
cpe:2.3:a:apache:airflow:1.10.9
-
cpe:2.3:a:apache:airflow:1.2.0
-
cpe:2.3:a:apache:airflow:1.3.0
-
cpe:2.3:a:apache:airflow:1.4.0
-
cpe:2.3:a:apache:airflow:1.4.1
-
cpe:2.3:a:apache:airflow:1.5.0
-
cpe:2.3:a:apache:airflow:1.5.1
-
cpe:2.3:a:apache:airflow:1.5.2
-
cpe:2.3:a:apache:airflow:1.6.0
-
cpe:2.3:a:apache:airflow:1.6.1
-
cpe:2.3:a:apache:airflow:1.6.2
-
cpe:2.3:a:apache:airflow:1.7.0
-
cpe:2.3:a:apache:airflow:1.7.1
-
cpe:2.3:a:apache:airflow:1.7.1.1
-
cpe:2.3:a:apache:airflow:1.7.1.2
-
cpe:2.3:a:apache:airflow:1.7.1.3
-
cpe:2.3:a:apache:airflow:1.8.0
-
cpe:2.3:a:apache:airflow:1.8.1
-
cpe:2.3:a:apache:airflow:1.8.2
-
cpe:2.3:a:apache:airflow:1.9.0
-
cpe:2.3:a:apache:airflow:2.0.0
-
cpe:2.3:a:apache:airflow:2.0.1
-
cpe:2.3:a:apache:airflow:2.0.2
-
cpe:2.3:a:apache:airflow:2.1.0
-
cpe:2.3:a:apache:airflow:2.1.1
-
cpe:2.3:a:apache:airflow:2.1.2
-
cpe:2.3:a:apache:airflow:2.1.3
-
cpe:2.3:a:apache:airflow:2.1.4
-
cpe:2.3:a:apache:airflow:2.2.0
-
cpe:2.3:a:apache:airflow:2.2.1
-
cpe:2.3:a:apache:airflow:2.2.2
-
cpe:2.3:a:apache:airflow:2.2.3
-
cpe:2.3:a:apache:airflow:2.2.4
-
cpe:2.3:a:apache:airflow:2.2.5
-
cpe:2.3:a:apache:airflow:2.3.0
-
cpe:2.3:a:apache:airflow:2.3.1
-
cpe:2.3:a:apache:airflow:2.3.3
-
cpe:2.3:a:apache:airflow:2.3.4
-
cpe:2.3:a:apache:airflow:2.4.0
-
cpe:2.3:a:apache:airflow:2.4.1
-
cpe:2.3:a:apache:airflow:2.4.3
-
cpe:2.3:a:apache:airflow:2.5.0
-
cpe:2.3:a:apache:airflow:2.6.0
-
cpe:2.3:a:apache:airflow:2.6.1
-
cpe:2.3:a:apache:airflow:2.6.2
-
cpe:2.3:a:apache:airflow:2.6.3
-
cpe:2.3:a:apache:airflow:2.7.0
-
cpe:2.3:a:apache:airflow:2.7.1
-
cpe:2.3:a:apache:airflow:2.7.2
-
cpe:2.3:a:apache:airflow:2.7.3