Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-97636— Apache Airflow HashiCorp provider: HashiCorp Vault secrets backend: team-scope guard bypass via user-controlled key

Quick assessment

Affected
Apache Software Foundation Apache Airflow HashiCorp provider
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Apache Airflow HashiCorp Provider 漏洞描述: 在 Apache Airflow 的 HashiCorp Provider 中,HashiCorp Vault 密钥后端(secrets backend)的团队作用域防护机制存在缺陷,可通过用户可控的变量键值被绕过。在多方团队部署环境中,被限定于某一特定团队的 DAG 作者,可以通过提供一个包含路径分隔符(path separator)的 Variable 键值,导致后端解析到属于其他团队的密钥。其原因是:当基于团队作用域的查找失败后,

AI Predicted 9.8 Difficulty: Easy EPSS 0.37% · P29

Possible ATT&CK Techniques 1 AI

T1552 · Unsecured Credentials

Affected Version Matrix 1

VendorProduct Version RangeStatus
Apache Software Foundation Apache Airflow HashiCorp provider 4.6.0< 4.8.0 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-97636

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Apache Airflow HashiCorp provider: HashiCorp Vault secrets backend: team-scope guard bypass via user-controlled key
Source: CVE Program / CVE List V5
Vulnerability Description
Apache Airflow HashiCorp provider: the HashiCorp Vault secrets backend's team-scope guard can be bypassed with a user-controlled key. In a multi-team deployment, a Dag author scoped to one team can supply a Variable key containing a path separator that causes the backend to resolve a secret belonging to a different team, because after the team-scoped lookup misses the backend falls back to a team-agnostic path concatenated from the unvalidated key. The Execution API Variables route accepts a path-shaped key, so this is reachable from ordinary Dag code. Affects multi-team deployments using the HashiCorp Vault secrets backend. Single-team deployments are not affected, as there is no cross-team boundary to cross. This is the same class as CVE-2026-86465, CVE-2026-68870, CVE-2026-68871 and CVE-2026-68872 in the Akeyless, Azure Key Vault, Yandex Lockbox and Amazon secrets backends. Users of apache-airflow-providers-hashicorp are recommended to upgrade to version 4.8.0 or later, which fixes the issue.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
通过用户控制密钥绕过授权机制
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Apache Software Foundation Apache Airflow HashiCorp provider 4.6.0 ~ 4.8.0 -

II. Public POCs for CVE-2026-97636

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-97636

请登录查看更多情报信息。

Patches & Fixes for CVE-2026-97636 (1)

Mailing List Discussions for CVE-2026-97636 (1)

News Coverage for CVE-2026-97636 (1)

Other References for CVE-2026-97636 (3)

IV. Related Vulnerabilities

V. Comments for CVE-2026-97636

No comments yet


Leave a comment