Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36290
HistoryJul 07, 2022 - 4:00 p.m.

Information Disclosure

2022-07-0716:00:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
apache_superset
vulnerability
information disclosure
metadata
sensitive information

EPSS

0.001

Percentile

29.4%

apache_superset is vulnerable to information disclosure. The vulnerability exists in apply function in base.py because the permission to access metadata is not properly handled which allows an attacker to gain access to sensitive information such as dataset name, columns and metrics.

EPSS

0.001

Percentile

29.4%

Related for VERACODE:36290