CVE-2022-40754 | Apache Airflow 2.3.0/2.3.1/2.3.2/2.3.3/2.3.4 /confirm redirect
A vulnerability was found in Apache Airflow 2.3.0/2.3.1/2.3.2/2.3.3/2.3.4. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /confirm. The manipulation leads to open redirect.
This vulnerability is known as CVE-2022-40754. Access to the local network is required for this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.