- What is the severity of CVE-2021-45230?
- CVE-2021-45230 has been scored as a medium severity vulnerability.
- How to fix CVE-2021-45230?
- As a workaround for remediating CVE-2021-45230: This is a very low severity CVE and admins can mitigate this issue by removing the global "can_create" permissions on DagRun for Airflow versions >=2.0.0,<2.2.0 and 1.10.x versions that have set `rbac=True` in config.
- Is CVE-2021-45230 being actively exploited in the wild?
- It is possible that CVE-2021-45230 is being exploited or will be exploited in a near future based on public information. According to its EPSS score, there is a ~2% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
- What software or system is affected by CVE-2021-45230?
- CVE-2021-45230 affects Apache Software Foundation Apache Airflow.