by @jakaba
11 Sep 2023

CVE-2023-27524: Authentication Bypass in Apache Superset

by @jakaba
11 Sep 2023

CVE-2023-27524: Authentication Bypass in Apache Superset

CVEs

8.9 High Severity

Apps

Superset
SupersetApache

Screenshots from the blog posts

images/clm7c48qs8mhj1gn9aqrz8e1y.jpgimages/clm7c48qs8mhj1gn9aqrz8e1y.jpg

Summary

Apache Superset versions up to and including 2.0.1 are susceptible to a critical session validation vulnerability.

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

74 posts

Total vcoins

0

Social media links

Comments (0)