Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-39264


By default, stack traces for errors were enabled, which resulted in the exposure of internal traces on REST API endpoints to users. This vulnerability exists in Apache Superset versions up to and including 2.1.0.


Published

2023-09-06T13:15:08.927

Last Modified

2024-11-21T08:15:00.773

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-209

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apache superset ≤ 2.1.0 Yes

References