CVE-2026-45360
Apache Software Foundation Apache Airflow, airflow
Apache Airflow's scheduler-side deadline-reference decoder (`SerializedCustomReference.deserialize_reference`) imported and dispatched arbitrary class paths drawn from DAG-author-controlled serialized state without an allowlist or plugin-registry gate. A DAG author whose code reaches the scheduler — the default on single-host deployments where the DAG bundle is importable from the scheduler process — could embed a custom `DeadlineReference` whose serialized form named an attacker-controlled module path, causing the scheduler to `import_string(...)` and instantiate that class with a live SQL...
- CVSS
- 7.3
- EPSS
- 0.68% 48.7% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.01