Apache Superset: Sensitive information disclosure on db connection details
CVE-2023-42505
4.3MEDIUM
What is CVE-2023-42505?
An authenticated user with read permissions on database connections metadata could potentially access sensitive information such as the connection's username.
This issue affects Apache Superset before 3.0.0.
Affected Version(s)
Apache Superset 0 < 3.0.0