
CVE-2026-22922: Apache Airflow: Airflow externalLogUrl Permission Bypass https://www.openwall.com/lists/oss-security/2026/02/09/2 CVE-2026-24098: Apache Airflow: Assigning single DAG permission leaked all DAGs Import Errors https://www.openwall.com/lists/oss-security/2026/02/09/3
Post summary
The text lists two new Apache Airflow CVEs with brief technical details but offers no proof‑of‑concept, exploit code, active exploitation evidence, or patch information.


