Filtered by vendor Apache
Subscriptions
Filtered by product Airflow Mongo Provider
Subscriptions
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-25141 | 1 Apache | 1 Airflow Mongo Provider | 2025-02-13 | 9.1 Critical |
When ssl was enabled for Mongo Hook, default settings included "allow_insecure" which caused that certificates were not validated. This was unexpected and undocumented. Users are recommended to upgrade to version 4.0.0, which fixes this issue. |
Page 1 of 1.