CVE-2023-36388, GHSA-4fg9-5w46-xmrj
pypi/apache-superset
Server-Side Request Forgery (SSRF)
Improper REST API permission in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma users to test network connections, possible SSRF.
All versions up to 2.1.0
Upgrade to version 2.1.1 or above.
2023-09-11
source |