NA

CVE-2023-42505

Published: 28/11/2023 Updated: 04/12/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An authenticated user with read permissions on database connections metadata could potentially access sensitive information such as the connection's username. This issue affects Apache Superset prior to 3.0.0.

Vulnerable Product Search on Vulmon Subscribe to Product

apache superset

Mailing Lists

Affected versions: - Apache Superset before 300 Description: An authenticated user with read permissions on database connections metadata could potentially access sensitive information such as the connection's username This issue affects Apache Superset before 300 Credit: Leonel John Erik Angel Torres (finder) References: su ...