6 Total advisories
6 Vulnerabilities
0 Malware
Dependency scanning
Check whether apache-airflow-providers-cncf-kubernetes is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 6.5
CVE-2023-51702
Apache Airflow CNCF Kubernetes provider, Apache Airflow: Kubernetes configuration file saved without encryption in the Metadata and logged as plain text in the Triggerer service
MEDIUM 6.5
CVE-2023-51702
Apache Airflow CNCF Kubernetes provider, Apache Airflow: Kubernetes configuration file saved without encryption in the Metadata and logged as plain text in the Triggerer service
HIGH 8.7
CVE-2026-27173
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
HIGH 8.7
CVE-2026-27173
Apache Airflow CNCF Kubernetes provider: JWT Token Exposure in KubernetesExecutor Command-Line Arguments
HIGH 7.2
CVE-2023-33234
Apache Airflow CNCF Kubernetes Provider: KubernetesPodOperator RCE via connection configuration
HIGH 7.2
CVE-2023-33234
Apache Airflow CNCF Kubernetes Provider: KubernetesPodOperator RCE via connection configuration
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes