CVE-2023-39264
—CVSS 3.1
4.3 medium
EPSS
1%p64
Published
()
Modified
Description
By default, stack traces for errors were enabled, which resulted in the exposure of internal traces on REST API endpoints to users. This vulnerability exists in Apache Superset versions up to and including 2.1.0.
- Vendors
- apache
- Products
- superset
- Weakness
- CWE-209
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.