Sploitus

CVE-2023-36387

No indexed exploits for CVE-2023-36387 yet

An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections.

Affected products
Apache Superset
Apache Superset
≤ 2.1.0
CVSS 3.1
5.4 MEDIUM
EPSS
0.8% (56th percentile)
Weakness
CWE-863
NVD status
Modified
Published
2023-09-06
CVE-2023-36387 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2023-36387 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2023-36387 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.