CVE-2026-23985
- EPSS 0.41%
- Veröffentlicht 30.07.2026 16:17:10
- Zuletzt bearbeitet 05.08.2026 19:38:49
A Regular Expression Denial of Service (ReDoS) vulnerability exists in Apache Superset versions 1.5.0 through 5.0.0. The vulnerability is located in the sql_parse.py component, specifically within the SQL_REGEX used for parsing SQL statements in the ...
CVE-2026-23981
- EPSS 0.36%
- Veröffentlicht 30.07.2026 16:17:10
- Zuletzt bearbeitet 05.08.2026 19:39:13
An Improper Authorization vulnerability exists in Apache Superset allowing an authenticated user with permissions to update charts to modify dashboards they do not own. When updating a chart's properties via the REST API, a user can provide a list of...
CVE-2026-23969
- EPSS 0.61%
- Veröffentlicht 24.02.2026 13:02:55
- Zuletzt bearbeitet 26.02.2026 16:27:28
Apache Superset utilizes a configurable dictionary, DISALLOWED_SQL_FUNCTIONS, to restrict the execution of potentially sensitive SQL functions within SQL Lab and charts. While this feature included restrictions for engines like PostgreSQL, a vulnerab...
CVE-2026-23980
- EPSS 0.5%
- Veröffentlicht 24.02.2026 12:54:09
- Zuletzt bearbeitet 25.02.2026 14:36:33
Improper Neutralization of Special Elements used in a SQL Command ('SQL Injection') vulnerability in Apache Superset allows an authenticated user with read access to conduct error-based SQL injection via the sqlExpression or where parameters. This i...
CVE-2026-23982
- EPSS 0.44%
- Veröffentlicht 24.02.2026 12:52:44
- Zuletzt bearbeitet 25.02.2026 14:38:02
An Improper Authorization vulnerability exists in Apache Superset that allows a low-privileged user to bypass data access controls. When creating a dataset, Superset enforces permission checks to prevent users from querying unauthorized data. However...
CVE-2026-23983
- EPSS 0.4%
- Veröffentlicht 24.02.2026 12:52:11
- Zuletzt bearbeitet 25.02.2026 14:37:49
A Sensitive Data Exposure vulnerability exists in Apache Superset allowing authenticated users to retrieve sensitive user information. The Tag endpoint (disabled by default) allows users to retrieve a list of objects associated with a specific tag. W...
CVE-2026-23984
- EPSS 0.35%
- Veröffentlicht 24.02.2026 12:51:07
- Zuletzt bearbeitet 26.02.2026 16:25:58
An Improper Input Validation vulnerability exists in Apache Superset that allows an authenticated user with SQLLab access to bypass the read-only verification check when using a PostgreSQL database connection. While the system effectively blocks stan...
CVE-2025-55675
- EPSS 0.51%
- Veröffentlicht 14.08.2025 13:18:53
- Zuletzt bearbeitet 04.11.2025 22:16:31
Apache Superset contains an improper access control vulnerability in its /explore endpoint. A missing authorization check allows an authenticated user to discover metadata about datasources they do not have permission to access. By iterating through ...
CVE-2025-55674
- EPSS 0.67%
- Veröffentlicht 14.08.2025 13:18:10
- Zuletzt bearbeitet 04.11.2025 22:16:30
A bypass of the DISALLOWED_SQL_FUNCTIONS security feature in Apache Superset allows for the execution of blocked SQL functions. An attacker can use a special inline block to circumvent the denylist. This allows a user with SQL Lab access to execute f...
CVE-2025-55672
- EPSS 0.66%
- Veröffentlicht 14.08.2025 13:17:33
- Zuletzt bearbeitet 04.11.2025 22:16:30
A stored Cross-Site Scripting (XSS) vulnerability exists in Apache Superset's chart visualization. An authenticated user with permissions to edit charts can inject a malicious payload into a column's label. The payload is not properly sanitized and g...