H3-2022-0072¶
Apache Airflow Debug Mode Enabled
| Category | SECURITY_MISCONFIGURATION |
| Base Score | 4.5 |
Description¶
The Apache Airflow instance is deployed in debug mode.
Impact¶
Attackers with access to Airflow's debug pin may execute arbitrary code, leading to data exfiltration and modification or malware.