VYPR

apk package

chainguard/airflow-3-compat

pkg:apk/chainguard/airflow-3-compat

Vulnerabilities (22)

  • CVE-2023-48022Nov 28, 2023
    affected < 0fixed 0

    Anyscale Ray 2.6.3 and 2.8.0 allows a remote attacker to execute arbitrary code via the job submission API. NOTE: the vendor's position is that this report is irrelevant because Ray, as stated in its documentation, is not intended for use outside of a strictly controlled network

  • CVE-2023-46136HigOct 25, 2023
    affected < 3.0.1-r1fixed 3.0.1-r1

    Werkzeug is a comprehensive WSGI web application library. In versions on the 3.x branch prior to 3.0.1 and on the 2.x branch prior to 2.3.8, if an upload of a file that starts with CR or LF and then is followed by megabytes of data without these characters: all of these bytes are

Page 2 of 2