Filtered by vendor Apache Subscriptions
Filtered by product Airflow Mongo Provider Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-25141 1 Apache 1 Airflow Mongo Provider 2025-02-13 9.1 Critical
When ssl was enabled for Mongo Hook, default settings included "allow_insecure" which caused that certificates were not validated. This was unexpected and undocumented. Users are recommended to upgrade to version 4.0.0, which fixes this issue.