Логотип exploitDog
bind:CVE-2024-24773
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-24773

Количество 2

Количество 2

nvd логотип

CVE-2024-24773

почти 2 года назад

Improper parsing of nested SQL statements on SQLLab would allow authenticated users to surpass their data authorization scope. This issue affects Apache Superset: before 3.0.4, from 3.1.0 before 3.1.1. Users are recommended to upgrade to version 3.1.1, which fixes the issue.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-5474-f7g5-273q

почти 2 года назад

Apache Superset: Improper validation of SQL statements allows for unauthorized access to data

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-24773

Improper parsing of nested SQL statements on SQLLab would allow authenticated users to surpass their data authorization scope. This issue affects Apache Superset: before 3.0.4, from 3.1.0 before 3.1.1. Users are recommended to upgrade to version 3.1.1, which fixes the issue.

CVSS3: 4.9
0%
Низкий
почти 2 года назад
github логотип
GHSA-5474-f7g5-273q

Apache Superset: Improper validation of SQL statements allows for unauthorized access to data

CVSS3: 4.9
0%
Низкий
почти 2 года назад

Уязвимостей на страницу