Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Apache Subscribe
Filtered by product Incubator Superset
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-12413 1 Apache 1 Incubator Superset 2020-08-24 5.0 MEDIUM 5.3 MEDIUM
In Apache Incubator Superset before 0.31 user could query database metadata information from a database he has no access to, by using a specially crafted complex query.
CVE-2019-12414 1 Apache 1 Incubator Superset 2019-12-19 5.0 MEDIUM 5.3 MEDIUM
In Apache Incubator Superset before 0.32, a user can view database names that he has no access to on a dropdown list in SQLLab