HIGH8.7CVE-2026-27173Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments from 0, < 10.17.0
HIGH8.7CVE-2026-27173Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments from 0, < 10.17.0
HIGH7.2CVE-2023-33234Apache Airflow CNCF Kubernetes Provider: KubernetesPodOperator RCE via connection configuration >= 5.0.0, < 7.0.0
HIGH7.2Apache Airflow CNCF Kubernetes Provider: KubernetesPodOperator RCE via connection configuration
>= 5.0.0, < 7.0.0
MEDIUM6.5Apache Airflow CNCF Kubernetes provider, Apache Airflow: Kubernetes configuration file saved without encryption in the Metadata and logged as plain text in the Triggerer service
>= 5.2.0, < 7.0.0
MEDIUM6.5Apache Airflow CNCF Kubernetes provider, Apache Airflow: Kubernetes configuration file saved without encryption in the Metadata and logged as plain text in the Triggerer service
>= 5.2.0, < 7.0.0