ZeroHour

CVE-2023-39264

CVSS 3.1
4.3 medium
EPSS
1%p64
Published
()
Modified
Description

By default, stack traces for errors were enabled, which resulted in the exposure of internal traces on REST API endpoints to users. This vulnerability exists in Apache Superset versions up to and including 2.1.0.

Vendors
apache
Products
superset
Weakness
CWE-209
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.