๐Ÿ” CVE Alert

CVE-2026-25604

MEDIUM 5.4

Apache Airflow AWS Auth Manager - Host Header Injection Leading to SAML Authentication Bypass

CVSS Score
5.4
EPSS Score
0.0%
EPSS Percentile
0th

In AWS Auth manager, the origin of the SAML authentication has been used as provided by the client and not verified against the actual instance URL.ย  This allowed to gain access to different instances with potentially different access controls by reusing SAML response from other instances. You should upgrade to 9.22.0 version of provider if you use AWS Auth Manager.

CWE CWE-346
Vendor apache software foundation
Product apache airflow providers amazon
Published Mar 9, 2026
Last Updated Mar 9, 2026
Stay Ahead of the Next One

Get instant alerts for apache software foundation apache airflow providers amazon

Be the first to know when new medium vulnerabilities affecting apache software foundation apache airflow providers amazon are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Apache Software Foundation / Apache Airflow Providers Amazon
8.0.0 < 9.22.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/apache/airflow/pull/61368 lists.apache.org: https://lists.apache.org/thread/spwwrsmwxod7fpttcd7n7zs46j839l77 openwall.com: http://www.openwall.com/lists/oss-security/2026/03/09/6

Credits

Sungwuk Jung