Количество 2
Количество 2
CVE-2022-43717
Dashboard rendering does not sufficiently sanitize the content of markdown components leading to possible XSS attack vectors that can be performed by authenticated users with create dashboard permissions. This issue affects Apache Superset version 1.5.2 and prior versions and version 2.0.0.
GHSA-9f88-wg5r-947j
Apache Superset vulnerable to Cross-site Scripting
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-43717 Dashboard rendering does not sufficiently sanitize the content of markdown components leading to possible XSS attack vectors that can be performed by authenticated users with create dashboard permissions. This issue affects Apache Superset version 1.5.2 and prior versions and version 2.0.0. | CVSS3: 5.4 | 1% Низкий | около 3 лет назад | |
GHSA-9f88-wg5r-947j Apache Superset vulnerable to Cross-site Scripting | CVSS3: 5.4 | 1% Низкий | около 3 лет назад |
Уязвимостей на страницу