Advisories for Pypi/Apache-Airflow-Providers-Fab package

2024

Apache Airflow Providers FAB Insufficient Session Expiration vulnerability

Insufficient Session Expiration vulnerability in Apache Airflow Providers FAB. This issue affects Apache Airflow Providers FAB: 1.2.1 (when used with Apache Airflow 2.9.3) and FAB 1.2.0 for all Airflow versions. The FAB provider prevented the user from logging out. FAB provider 1.2.1 only affected Airflow 2.9.3 (earlier and later versions of Airflow are not affected) FAB provider 1.2.0 affected all versions of Airflow. Users who run Apache Airflow 2.9.3 are …