CVE-2023-42504
published 2023-11-28CVE-2023-42504: An authenticated malicious user could initiate multiple concurrent requests, each requesting multiple dashboard exports, leading to a possible denial of…
medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
An authenticated malicious user could initiate multiple concurrent requests, each requesting multiple dashboard exports, leading to a possible denial of service.
This issue affects Apache Superset: before 3.0.0
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | superset | < 3.0.0 | 3.0.0 |
| apache_software_foundation | apache_superset | < 3.0.0 | 3.0.0 |