CVE-2020-17513
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 4.4%
exploitation probability
4.4%top 9% of all CVEs
observed exploitation
nono source reports it
In Apache Airflow versions prior to 1.10.13, the Charts and Query View of the old (Flask-admin based) UI were vulnerable for SSRF attack.
Affected products
Apache Software Foundation · Apache Airflow