Description
flask-caching has a published vulnerability https://nvd.nist.gov/vuln/detail/CVE-2021-33026#vulnCurrentDescriptionTitle where access to the cache store would lead to authorised code execution in Superset. Unfortunately, a fix does not appear available at this time.
Use case / motivation
Would like to run Airflow without known vulnrabilities
Are you willing to submit a PR?
No...
Related Issues
pallets-eco/flask-caching#209
apache/superset#15271
Description
flask-caching has a published vulnerability https://nvd.nist.gov/vuln/detail/CVE-2021-33026#vulnCurrentDescriptionTitle where access to the cache store would lead to authorised code execution in Superset. Unfortunately, a fix does not appear available at this time.
Use case / motivation
Would like to run Airflow without known vulnrabilities
Are you willing to submit a PR?
No...
Related Issues
pallets-eco/flask-caching#209
apache/superset#15271