CVE-2026-82355
4.2 MEDIUMpublic exploit availablePublished 2026-09-21 · Updated 2026-09-21
AI risk analysis
- Summary
- This vulnerability allows an attacker to bypass intended authentication by using a session cookie and an explicit bearer token, with Airflow resolving the caller from the cookie instead of the token.
- Exploitability
- Exploitation requires placing a valid session cookie in the victim's browser or client, making it moderately difficult but feasible through various attack vectors like cross-site scripting or shared workstations.
- Blast radius
- If exploited, this could lead to principal confusion and misattributed audit records, impacting trust and accountability within the system.
- Prioritized remediation
- Upgrade Apache Airflow to version 3.3.2 or later to ensure the caller is resolved from the explicitly supplied credential whenever one is present.
Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.
NVD description
When a request to the Airflow core API carries both a session cookie and an explicit `Authorization: Bearer` token, Airflow resolves the caller from the cookie and ignores the bearer token, inverting the intended precedence of bearer over cookie. The request then executes -- and is recorded in the audit log -- as the cookie's principal rather than the identity the client explicitly presented. Only Apache Airflow 3.3.0 and 3.3.1 are affected. Earlier releases do not contain the code path that caches the cookie-derived user, and are not vulnerable. Exploiting this requires an attacker to first place a valid session cookie of their own into the victim's browser or client: for example by cookie tossing from a sibling subdomain, through cross-site scripting in a separate application sharing a parent domain, or via a shared workstation. Deployments that host the Airflow UI on a domain shared with other applications are therefore the most exposed; a deployment on a dedicated domain with no co-hosted applications is not reachable this way. The consequence is principal confusion and misattributed audit records rather than a direct privilege escalation. Users of 3.3.0 or 3.3.1 should upgrade to Apache Airflow 3.3.2 or later, which resolves the caller from the explicitly supplied credential whenever one is present.
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
Weaknesses
CWE-384
Public exploit & PoC references
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-48976PoC
- HIGHCVE-2026-58269PoC
- CRITICALCVE-2026-63455
- CRITICALCVE-2026-63456
- CRITICALCVE-2026-69110PoC
- MEDIUMCVE-2026-69190PoC
- HIGHCVE-2026-70482PoC
- MEDIUMCVE-2026-70491PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.