CVE-2023-36387
pypi/apache-superset
Improper Preservation of Permissions
An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections.
All versions up to 2.1.0
Upgrade to version 2.1.1 or above.
2023-09-12
source |