Headline
GHSA-299q-3p96-5898: Apache Superset Incorrect Authorization vulnerability
An authenticated user could potentially access metadata for a datasource they are not authorized to view by submitting a targeted REST API request. This issue affects Apache Superset before 4.0.0.
Users are recommended to upgrade to version 4.0.0, which fixes the issue.
Apache Superset Incorrect Authorization vulnerability
Moderate severity GitHub Reviewed Published May 7, 2024 to the GitHub Advisory Database • Updated May 7, 2024