
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-25604 is a Host Header Injection vulnerability in the AWS Auth Manager component of Apache Airflow Providers Amazon that enables SAML authentication bypass. The flaw affects apache-airflow-providers-amazon versions 8.0.0 through 9.21.x, and was disclosed on March 9, 2026 by Apache via the oss-security mailing list. The vulnerability was discovered by Sungwuk Jung and carries a CVSS v3.1 base score of 5.4 (Medium) (Openwall oss-sec, Feedly).
The root cause is an Origin Validation Error (CWE-346): the AWS Auth Manager component uses the host value as supplied by the client HTTP request rather than deriving it from the server's configured instance URL, allowing an attacker to manipulate the SAML authentication origin. By injecting a crafted Host header, a low-privileged attacker with network access can replay a valid SAML response obtained from one Airflow instance against a different instance, bypassing that instance's access controls. The fix, merged in PR #61368, replaces the client-supplied host with the value from the server configuration (GitHub PR, Openwall oss-sec).
Successful exploitation allows an attacker with low privileges to replay SAML authentication responses across different Apache Airflow instances, potentially gaining unauthorized access to instances with distinct and more permissive access control configurations. This results in unauthorized data access (low confidentiality impact) and the ability to perform unauthorized actions such as modifying DAGs or configurations (low integrity impact), with no direct availability impact. The cross-instance nature of the attack enables lateral movement across Airflow deployments sharing the same identity provider (Feedly, Openwall oss-sec).
As of the time of disclosure, there was no confirmed evidence of active in-the-wild exploitation, though a public proof-of-concept repository (CVE-2026-25604-PoC by John-Jung) appeared on GitHub and was indexed by Sploitus in late April 2026 (Feedly). The EPSS score is 0.01% (0.0001), indicating a currently low probability of exploitation. Exploitation requires low privileges (an authenticated account on at least one Airflow instance using AWS Auth Manager with SAML). The vulnerability is not listed in the CISA KEV catalog.
apache-airflow-providers-amazon versions 8.0.0–9.21.x.Host header set to the hostname of Instance A, so the SAML origin validation uses the attacker-controlled value.Host header, bypassing origin verification./auth/saml/acs) containing a Host header value that does not match the server's configured instance URL; SAML POST requests originating from unexpected source IPs.Host headers; authentication events for a user account on Instance B that has no prior login history on that instance.Upgrade apache-airflow-providers-amazon to version 9.22.0 or later, which fixes the vulnerability by reading the host from the server configuration rather than the client-supplied request header (GitHub PR, Openwall oss-sec). No configuration-based workaround is documented; patching is the only recommended remediation. Organizations using AWS Auth Manager with SAML should prioritize this upgrade, particularly in multi-instance deployments where cross-instance lateral movement is a concern.
The vulnerability was publicly announced by Apache PMC member Jarek Potiuk on the oss-security mailing list on March 9, 2026, crediting Sungwuk Jung as the finder (Openwall oss-sec). A technical write-up describing the issue as a "Host Header Injection Leading to SAML Authentication Bypass" was published by Infinitsec shortly after disclosure. Rewterz included it in a threat advisory covering multiple Apache Airflow vulnerabilities (Rewterz Advisory). Social media activity on Bluesky noted the CVE publication, and the vulnerability was indexed by standard security tracking platforms including VulDB and CIRCL.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."