{"cvss":8.8,"datePublished":"2022-01-18","dateUpdated":"2022-01-18","description":"A remote code/command injection vulnerability was discovered in one of the example DAGs shipped with Airflow.","dueDate":"2022-07-18","id":"CVE-2020-11978","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Unknown","notes":"https://nvd.nist.gov/vuln/detail/CVE-2020-11978","product":"Airflow","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"Apache Airflow Command Injection","vendor":"Apache"}