Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-96660
HistoryNov 30, 2023 - 12:00 a.m.

Apache Superset Authorization Issues Vulnerability (CNVD-2023-9666047)

2023-11-3000:00:00
China National Vulnerability Database
www.cnvd.org.cn
24
apache superset
authorization
vulnerability
data tampering
cnvd-2023-9666047

AI Score

7.1

Confidence

High

EPSS

0.005

Percentile

76.4%

Apache Superset is a data visualization and data exploration platform from the Apache (USA) Foundation. An authorization issue vulnerability exists in Apache Superset versions prior to 2.1.2 that stems from the presence of incorrect authorization checks. An attacker could exploit this vulnerability to cause authentication and authorization data to be tampered with.

AI Score

7.1

Confidence

High

EPSS

0.005

Percentile

76.4%