When a guest user accesses a chart in Apache Superset, the API response from the /chart/data endpoint includes a query field in its payload. This field contains the underlying query, which improperly ...
Continue ReadingAugust 18, 2025
Apache Superset contains an improper access control vulnerability in its /explore endpoint. A missing authorization check allows an authenticated user to discover metadata about datasources they do no ...
Continue ReadingAugust 18, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated u ...
Continue ReadingAugust 18, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 8.14 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed an unauthenticated user to create a deni ...
Continue ReadingAugust 18, 2025
creation_timestamp| type| source ---|---|--- 2025-08-18 08:41:02+00:00| seen|...Read More ...
Continue ReadingAugust 18, 2025
creation_timestamp| type| source ---|---|--- 2025-08-18 08:23:28+00:00| seen|...Read More ...
Continue ReadingAugust 18, 2025
creation_timestamp| type| source ---|---|--- 2025-08-18 08:18:28+00:00| seen|...Read More ...
Continue ReadingAugust 18, 2025
creation_timestamp| type| source ---|---|--- 2025-08-18 09:36:32+00:00| seen|...Read More ...
Continue ReadingAugust 18, 2025
Back to Main