Known Vulnerabilities for products from Dataiku
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Dataiku".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-24045 json | In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying t... | 6.5 - MEDIUM | 2023-03-01 | 2023-03-09 |
| CVE-2021-27225 json | In Dataiku DSS before 8.0.6, insufficient access control in the Jupyter notebooks integration allows users (who have coding p... | 5.4 - MEDIUM | 2021-03-01 | 2021-03-05 |
| CVE-2020-8817 json | Dataiku DSS before 6.0.5 allows attackers write access to the project to modify the "Created by" metadata. | 8.1 - HIGH | 2020-09-14 | 2020-09-18 |
| CVE-2018-10732 json | The REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a userna... | 5.3 - MEDIUM | 2018-05-28 | 2018-07-02 |
Known software with vulnerabilities from Dataiku
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Dataiku | Data Science Studio | - |