Количество 2
Количество 2
CVE-2021-41971
больше 4 лет назад
Apache Superset up to and including 1.3.0 when configured with ENABLE_TEMPLATE_PROCESSING on (disabled by default) allowed SQL injection when a malicious authenticated user sends an http request with a custom URL.
CVSS3: 8.8
EPSS: Низкий
GHSA-pg8m-4p8j-2p56
больше 3 лет назад
Apache Superset SQL Injection when template processing is enabled
CVSS3: 8.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-41971 Apache Superset up to and including 1.3.0 when configured with ENABLE_TEMPLATE_PROCESSING on (disabled by default) allowed SQL injection when a malicious authenticated user sends an http request with a custom URL. | CVSS3: 8.8 | 1% Низкий | больше 4 лет назад | |
GHSA-pg8m-4p8j-2p56 Apache Superset SQL Injection when template processing is enabled | CVSS3: 8.8 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20