cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-29733,https://securityvulnerability.io/vulnerability/CVE-2024-29733,Improper Certificate Validation vulnerability in Apache Airflow FTP Provider,"Improper Certificate Validation vulnerability in Apache Airflow FTP Provider. The FTP hook lacks complete certificate validation in FTP_TLS connections, which can potentially be leveraged. Implementing proper certificate validation by passing context=ssl.create_default_context() during FTP_TLS instantiation is used as mitigation to validate the certificates properly. This issue affects Apache Airflow FTP Provider: before 3.7.0. Users are recommended to upgrade to version 3.7.0, which fixes the issue. ",Apache,Apache Airflow Ftp Provider,,,0.00044999999227002263,false,,false,false,false,,,false,false,,2024-04-21T17:21:55.722Z,0