ZeroHour

CVE-2022-43719

CVSS 3.1
8.8 high
EPSS
<1%p45
Published
()
Modified
Description

Two legacy REST API endpoints for approval and request access are vulnerable to cross site request forgery. This issue affects Apache Superset version 1.5.2 and prior versions and version 2.0.0.

Vendors
apache
Products
superset
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.