NA

CVE-2023-36387

Published: 06/09/2023 Updated: 19/10/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.5 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections.

Vulnerable Product Search on Vulmon Subscribe to Product

apache superset