← Back to CVE List

CVE-2017-12614

Published: 2018-08-06T13:29Z
Last Modified: 2024-11-21T03:09Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
It was noticed an XSS in certain 404 pages that could be exploited to perform an XSS attack. Chrome will detect this as a reflected XSS attempt and prevent the page from loading. Firefox and other browsers don't, and are vulnerable to this attack. Mitigation: The fix for this is to upgrade to Apache Airflow 1.9.0 or above. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt