ZeroHour

CVE-2023-42505

CVSS 3.1
4.3 medium
EPSS
1%p61
Published
()
Modified
Description

An authenticated user with read permissions on database connections metadata could potentially access sensitive information such as the connection's username. This issue affects Apache Superset before 3.0.0.

Vendors
apache
Products
superset
Weakness
CWE-200
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.