{"id":"CVE-2023-22887","aliases":["BIT-airflow-2023-22887","GHSA-ggwr-4vr8-g7wv","PYSEC-2023-104"],"url":"https://o3.security/vulnerability/CVE-2023-22887","summary":"Apache Airflow path traversal by authenticated user","details":"Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an attacker to perform unauthorized file access outside the intended directory structure by manipulating the run_id parameter. This vulnerability is considered low since it requires an authenticated user to exploit it. It is recommended to upgrade to a version that is not affected","published":"2023-07-12T09:14:25.892Z","modified":"2026-08-08T03:47:38.633435176Z","cvss":{"score":6.5,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"apache-airflow","fixedVersion":"2.6.3"}],"fix":{"url":"https://github.com/apache/airflow/pull/32293","label":"apache/airflow#32293"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/22xxx/CVE-2023-22887.json"},{"type":"ADVISORY","url":"https://lists.apache.org/thread/rxddqs76r6rkxsg1n24d029zys67qwwo"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-22887"},{"type":"FIX","url":"https://github.com/apache/airflow/pull/32293"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-08T03:47:38.633435176Z"}}