GHSA-524w-vq63-2xhf high
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
Affected range
ECOSYSTEM: introduced 0; fixed 10.17.0Fixed versions: 10.17.0
Provider package apache-airflow-providers-cncf-kubernetes for Apache Airflow
Evidence path
RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.
Latest version
10.22.0
No matching published advisory returned
Known exploitation
No KEV match
Checked by exact CVE identifier
Highest advisory severity
High
3 active advisories
The registry confirms the version, then OSV checks advisories for that exact value.
Published records
Affected range
ECOSYSTEM: introduced 0; fixed 10.17.0Fixed versions: 10.17.0
Affected range
ECOSYSTEM: introduced 5.0.0; fixed 7.0.0Fixed versions: 7.0.0
Affected range
ECOSYSTEM: introduced 5.2.0; fixed 7.0.0Fixed versions: 7.0.0