GobyVuls/Apache_Superset_Cookie_Permission_Bypass_Vulnerability_(CVE-2023-30776).md

1.8 KiB
Raw Blame History

Vulnerability Apache Superset Cookie Permission Bypass Vulnerability (CVE-2023-30776)
Chinese name Apache Superset Cookie 权限绕过漏洞CVE-2023-27524
CVSS core 9.8
FOFA Query (click to view the results directly) app="APACHE-Superset"
Number of assets affected 56089
Description Apache Superset is an open source modern data exploration and visualization platform.Apache Superset Cookie has a permission bypass vulnerability that allows an attacker to control the entire system, ultimately leaving the system in an extremely unsafe state.
Impact Apache Superset Cookie has a permission bypass vulnerability that allows an attacker to control the entire system, ultimately leaving the system in an extremely unsafe state.