Affected versions:

- Apache Superset before 3.0.0

Description:

An authenticated user with read permissions on database connections metadata 
could potentially access sensitive information such as the connection's 
username.

This issue affects Apache Superset before 3.0.0.

Credit:

 Leonel John Erik Angel Torres (finder)

References:

https://superset.apache.org
https://www.cve.org/CVERecord?id=CVE-2023-42505

Reply via email to