BIT-SUPERSET-2025-55673 Apache Superset: Metadata exposure in embedded charts

When a guest user accesses a chart in Apache Superset, the API response from the /chart/data endpoint includes a query field in its payload. This field contains the underlying query, which improperly ...

Continue Reading
BIT-SUPERSET-2025-55675 Apache Superset: Incorrect datasource authorization on REST API

Apache Superset contains an improper access control vulnerability in its /explore endpoint. A missing authorization check allows an authenticated user to discover metadata about datasources they do no ...

Continue Reading
BIT-GITLAB-2024-10219 Incorrect Authorization in GitLab

An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated u ...

Continue Reading
BIT-GITLAB-2025-1477 Allocation of Resources Without Limits or Throttling in GitLab

An issue has been discovered in GitLab CE/EE affecting all versions from 8.14 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that could have allowed an unauthenticated user to create a deni ...

Continue Reading
CVE-2025-54500

creation_timestamp| type| source ---|---|--- 2025-08-18 08:41:02+00:00| seen|...Read More ...

Continue Reading
CVE-2025-57703

creation_timestamp| type| source ---|---|--- 2025-08-18 08:23:28+00:00| seen|...Read More ...

Continue Reading
CVE-2025-57700

creation_timestamp| type| source ---|---|--- 2025-08-18 08:18:28+00:00| seen|...Read More ...

Continue Reading
CVE-2025-51978

creation_timestamp| type| source ---|---|--- 2025-08-18 09:36:32+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: