[ANNOUNCE] Beam 2.26.0 Released

2020-12-11 Thread Robert Burke
The Apache Beam team is pleased to announce the release of version 2.26.0. Apache Beam is an open source unified programming model to define and execute data processing pipelines, including ETL, batch and stream (continuous) processing. See https://beam.apache.org You can download the release her

CVE-2020-17511: Apache Airflow Airflow admin password gets logged in plain text

2020-12-11 Thread Kaxil Naik
Hi Airflow community, Please find below the information about a vulnerability which has been addressed in Apache Airflow v1.10.13. Airflow 1.10.13 contains a bug so I would recommend users to upgrade to Airflow 1.10.14 (released yesterday): *CVE-2020-17511: Apache Airflow Airflow admin password g

CVE-2020-17513: Apache Airflow Server-Side Request Forgery (SSRF) in Charts & Query View

2020-12-11 Thread Kaxil Naik
Hi Airflow community, Please find below the information about a vulnerability which has been addressed in Apache Airflow v1.10.13. Airflow 1.10.13 contains a bug so I would recommend users to upgrade to Airflow 1.10.14 (released yesterday): *CVE-2020-17513: Apache Airflow Server-Side Request Forg

Apache Airflow Security Vulnerabilities fixed in v1.10.13: CVE-2020-17515

2020-12-11 Thread Kaxil Naik
Hi Airflow community, Please find below the information about vulnerability which has been addressed in Apache Airflow v1.10.13. Airflow 1.10.13 contains a bug so I would recommend users to upgrade to Airflow 1.10.14 (released yesterday): *CVE-2020-17515: Apache Airflow Reflected XSS via Origin P

The Apache News Round-up: week ending 11 December 2020

2020-12-11 Thread Swapnil M Mane
[this newsletter is available online at https://s.apache.org/eae50 ] Happy Friday! Let's take a look at what the Apache community has been up to over the past week: ASF Board – management and oversight of the business affairs of the corporation in accordance with the Foundation's bylaws. - Next