Files
CVEs-PoC/2022/CVE-2022-24288.md
T
2025-09-29 21:09:30 +02:00

1.0 KiB

CVE-2022-24288

Description

In Apache Airflow, prior to version 2.2.4, some example DAGs did not properly sanitize user-provided params, making them susceptible to OS Command Injection from the web UI.

POC

Reference

No PoCs from references.

Github