QID 982197
QID 982197: Python (pip) Security Update for apache-superset (GHSA-9c29-9h4m-wg5p)
In Apache Incubator Superset before 0.32, a user can view database names that he has no access to on a dropdown list in SQLLab
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-9c29-9h4m-wg5p for updates pertaining to this vulnerability.
Vendor References
- GHSA-9c29-9h4m-wg5p -
github.com/advisories/GHSA-9c29-9h4m-wg5p
CVEs related to QID 982197
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-9c29-9h4m-wg5p | apache-superset |
|