All 2 CVE vulnerabilities found in Apache Airflow Keycloak provider, with AI-generated Chinese analysis, references, and POCs.
Vendor: Apache Software Foundation
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-76187 | Apache Airflow Keycloak provider: Any realm client's credentials mint an Airflow session JWT CWE-287 | - | - | 2026-09-16 |
| CVE-2026-76186 | Apache Airflow Keycloak provider: Keycloak token cookies not bound to Airflow session identity CWE-565 | - | - | 2026-09-16 |
All 2 known CVE vulnerabilities affecting Apache Airflow Keycloak provider with full Chinese analysis, references, and POCs where available.