Affected versions: - Apache Superset before 3.0.0
Description: An authenticated user with read permissions on database connections metadata could potentially access sensitive information such as the connection's username. This issue affects Apache Superset before 3.0.0. Credit: Leonel John Erik Angel Torres (finder) References: https://superset.apache.org https://www.cve.org/CVERecord?id=CVE-2023-42505
