Sploitus

CVE-2023-49734

No indexed exploits for CVE-2023-49734 yet

An authenticated Gamma user has the ability to create a dashboard and add charts to it, this user would automatically become one of the owners of the charts allowing him to incorrectly have write permissions to these charts.This issue affects Apache Superset: before 2.1.2, from 3.0.0 before 3.0.2. Users are recommended to upgrade to version 3.0.2 or 2.1.3, which fixes the issue.

Affected products
Apache Superset
Apache Superset
< 2.1.2, 3.0.2
Fix
Available
CVSS 3.1
7.7 HIGH
EPSS
0.9% (59th percentile)
Weakness
CWE-863
NVD status
Modified
Published
2023-12-19
CVE-2023-49734 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2023-49734 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2023-49734 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.