In Apache Airflow versions prior to 2.4.2, the "Trigger DAG with config" screen was susceptible to XSS attacks via the `origin` query argument.
2022-11-02T12:15:56.050
2025-05-02T21:15:23.173
Modified
[email protected]
CVSSv3.1: 6.1 (MEDIUM)