/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-ffhc-5g6g-f5v8

Published

Last updated

https://images.chainguard.dev/security/CGA-ffhc-5g6g-f5v8
Package

airflow-2

Repository

Chainguard

Latest Update
Pending upstream fix
Aliases
  • CVE-2025-58754
  • GHSA-4hjh-wcwx-xvwj

Severity

7.5

High

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-58754

Updates

Status

Pending upstream fix

Impact

The axios dependency needs to be bumped by upstream as upgrading it to the latest version would bump it by several versions and would break the application in unpredictable ways.


Safe Source for Open Source™
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing