apache-airflow-providers-cncf-kubernetes
Provider package apache-airflow-providers-cncf-kubernetes for Apache Airflow
Activity
- Latest release
- 3d ago
- Total releases
- 234
- Cadence
- ~5 days
- Last 12 months
- 49
Details
- License
- Apache-2.0
- First release
- Nov 09, 2020
| Version | Released | |
|---|---|---|
10.22.0rc1
pre
|
10.22.0rc1
pre
Dependencies (8)
|
|
10.21.1
patch
|
10.21.1
patch
Dependencies (8)
|
|
10.21.1rc1
pre
|
10.21.1rc1
pre
Dependencies (8)
|
|
10.21.0
minor
|
10.21.0
minor
Dependencies (8)
|
|
10.21.0rc3
pre
|
10.21.0rc3
pre
Dependencies (8)
|
|
10.21.0rc2
pre
|
10.21.0rc2
pre
Dependencies (8)
|
|
10.21.0rc1
pre
|
10.21.0rc1
pre
Dependencies (8)
|
|
10.20.0
minor
|
10.20.0
minor
Dependencies (8)
|
|
10.20.0rc1
pre
|
10.20.0rc1
pre
Dependencies (8)
|
|
10.19.0
minor
|
10.19.0
minor
Dependencies (8)
|
|
10.19.0rc1
pre
|
10.19.0rc1
pre
Dependencies (8)
|
|
10.18.1rc2
pre
|
10.18.1rc2
pre
Dependencies (8)
|
|
10.18.1rc1
pre
|
10.18.1rc1
pre
Dependencies (8)
|
|
10.18.0
minor
|
10.18.0
minor
Dependencies (8)
|
|
10.18.0rc2
pre
|
10.18.0rc2
pre
Dependencies (8)
|
|
10.18.0rc1
pre
|
10.18.0rc1
pre
Dependencies (8)
|
|
10.17.1
patch
|
10.17.1
patch
Dependencies (8)
|
|
10.17.1rc1
pre
|
10.17.1rc1
pre
Dependencies (8)
|
|
10.17.0
minor
|
10.17.0
minor
Dependencies (8)
|
|
10.17.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.17.0rc1
pre
Dependencies (8)
|
|
10.16.1
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.16.1
patch
Dependencies (8)
|
|
10.16.1rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.16.1rc1
pre
Dependencies (8)
|
|
10.16.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.16.0
minor
Dependencies (8)
|
|
10.16.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.16.0rc1
pre
Dependencies (8)
|
|
10.15.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.15.0
minor
Dependencies (8)
|
|
10.15.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.15.0rc1
pre
Dependencies (8)
|
|
10.14.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.14.0
minor
Dependencies (8)
|
|
10.14.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.14.0rc1
pre
Dependencies (8)
|
|
10.13.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.13.0
minor
Dependencies (8)
|
|
10.13.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.13.0rc1
pre
Dependencies (8)
|
|
10.12.4
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.4
patch
Dependencies (8)
|
|
10.12.4rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.4rc1
pre
Dependencies (8)
|
|
10.12.3
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.3
patch
Dependencies (8)
|
|
10.12.3rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.3rc1
pre
Dependencies (8)
|
|
10.12.2
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.2
patch
Dependencies (8)
|
|
10.12.2rc2
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.2rc2
pre
Dependencies (8)
|
|
10.12.1
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.1
patch
Dependencies (8)
|
|
10.12.1rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.1rc1
pre
Dependencies (8)
|
|
10.12.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.0
minor
Dependencies (8)
|
|
10.12.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.12.0rc1
pre
Dependencies (8)
|
|
10.11.1
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.11.1
patch
Dependencies (8)
|
|
10.11.1rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.11.1rc1
pre
Dependencies (8)
|
|
10.11.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.11.0
minor
Dependencies (7)
|
|
10.11.0rc2
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.11.0rc2
pre
Dependencies (7)
|
|
10.11.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.11.0rc1
pre
Dependencies (7)
|
|
10.10.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.10.0
minor
Dependencies (7)
|
|
10.10.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.10.0rc1
pre
Dependencies (7)
|
|
10.9.0
minor
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.9.0
minor
Dependencies (7)
|
|
10.9.0rc1
pre
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.9.0rc1
pre
Dependencies (7)
|
|
10.8.2
patch
1 CVE
CVE-2026-27173
PYSEC-2026-2365
GHSA-524w-vq63-2xhf
Jul 13, 2026
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
8.7
/ 10
High
Local
Low
Low
None
Changed
High
High
Low
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks. Affected versions
1.0.0
1.0.0b1
1.0.0b2
1.0.0rc1
1.0.1
1.0.1rc1
1.0.2
1.0.2rc1
1.1.0
1.1.0rc1
1.2.0
1.2.0rc1
+ 203 more Show less
10.0.0
10.0.0rc1
10.0.1
10.0.1rc1
10.1.0
10.1.0rc1
10.1.0rc2
10.10.0
10.10.0rc1
10.11.0
10.11.0rc1
10.11.0rc2
10.11.1
10.11.1rc1
10.12.0
10.12.0rc1
10.12.1
10.12.1rc1
10.12.2
10.12.2rc2
10.12.3
10.12.3rc1
10.12.4
10.12.4rc1
10.13.0
10.13.0rc1
10.14.0
10.14.0rc1
10.15.0
10.15.0rc1
10.16.0
10.16.0rc1
10.16.1
10.16.1rc1
10.17.0rc1
10.2.0
10.3.0
10.3.0rc1
10.3.1
10.3.1rc1
10.4.0
10.4.0b1
10.4.0rc1
10.4.1
10.4.1rc1
10.4.2
10.4.2rc1
10.4.3
10.4.3rc1
10.5.0
10.5.0rc1
10.5.0rc2
10.6.0
10.6.0rc1
10.6.1
10.6.1rc1
10.6.2
10.6.2rc1
10.7.0
10.7.0rc1
10.8.0
10.8.0rc1
10.8.1
10.8.1rc1
10.8.2
10.8.2rc1
10.9.0
10.9.0rc1
2.0.0
2.0.0rc1
2.0.0rc2
2.0.1
2.0.1rc1
2.0.1rc2
2.0.2
2.0.2rc1
2.0.3
2.0.3rc1
2.1.0
2.1.0rc1
2.2.0
2.2.0rc1
3.0.0
3.0.0rc1
3.0.1
3.0.1rc1
3.0.2
3.0.2rc1
3.0.2rc2
3.1.0
3.1.0rc1
3.1.1
3.1.1rc1
3.1.2
3.1.2rc1
4.0.0
4.0.0rc1
4.0.1
4.0.1rc1
4.0.2
4.0.2rc1
4.1.0
4.1.0rc2
4.2.0
4.2.0rc1
4.3.0
4.3.0rc1
4.3.0rc2
4.3.0rc3
4.4.0
4.4.0rc1
5.0.0
5.0.0rc3
5.1.0
5.1.0rc1
5.1.0rc2
5.1.1
5.1.1rc1
5.2.0
5.2.0rc1
5.2.1
5.2.1rc1
5.2.2
5.2.2rc1
5.3.0
5.3.0rc1
6.0.0
6.0.0rc1
6.1.0
6.1.0rc1
6.2.0rc1
7.0.0
7.0.0rc2
7.1.0
7.1.0rc1
7.10.0
7.10.0rc1
7.11.0
7.11.0rc1
7.12.0
7.12.0rc1
7.13.0
7.13.0rc1
7.14.0
7.14.0rc1
7.14.0rc2
7.2.0
7.2.0rc1
7.2.0rc2
7.3.0
7.3.0rc1
7.4.0
7.4.0rc1
7.4.1
7.4.1rc1
7.4.2
7.4.2rc1
7.5.0
7.5.0rc1
7.5.0rc2
7.5.1
7.5.1rc1
7.6.0
7.6.0rc1
7.7.0
7.7.0rc1
7.8.0
7.8.0rc1
7.9.0
7.9.0rc1
8.0.0
8.0.0rc1
8.0.0rc2
8.0.0rc3
8.0.1
8.0.1rc1
8.1.0
8.1.0rc1
8.1.1
8.1.1rc1
8.2.0
8.2.0rc1
8.3.0
8.3.0rc1
8.3.0rc2
8.3.1
8.3.1rc1
8.3.2
8.3.2rc1
8.3.3
8.3.3rc1
8.3.4
8.3.4rc1
8.4.0
8.4.0rc1
8.4.1
8.4.1rc1
8.4.2
8.4.2rc1
9.0.0
9.0.0rc1
9.0.1
9.0.1rc1
Fixed in
10.17.0
References
Updated Jul 13, 2026 · Source: OSV.dev |
10.8.2
patch
Dependencies (6)
|