CVE-2026-32228
UI / API User with asset materialize permission could trigger dags they had no access to.
Users are advised to migrate to Airflow version 3.2.0 that fixes the issue.
Users are advised to migrate to Airflow version 3.2.0 that fixes the issue.
Vendor
-
Product
-
CWE
Yayın Tarihi
2026-04-18 07:16:10
Güncelleme
2026-04-18 07:16:10
Source Identifier
security@apache.org
KEV Date Added
-