Description
An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2476 | An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections. |
Github GHSA |
GHSA-9832-mgg4-3gr6 | Apache Superset has improper default REST API permission for Gamma users |
References
History
Thu, 26 Sep 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-09-26T18:10:35.983Z
Reserved: 2023-06-21T14:06:35.892Z
Link: CVE-2023-36387
Updated: 2024-08-02T16:45:56.364Z
Status : Modified
Published: 2023-09-06T13:15:08.537
Modified: 2024-11-21T08:09:39.043
Link: CVE-2023-36387
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA