CVE-2022-45438

5.3MEDIUM

When explicitly enabling the feature flag DASHBOARD_CACHE (disabled by default), the system allowed for an unauthenticated user to access dashboard configuration metadata using a REST API Get endpoint

发布于: 1/16/2023更新于: 4/7/2025

描述

When explicitly enabling the feature flag DASHBOARD_CACHE (disabled by default), the system allowed for an unauthenticated user to access dashboard configuration metadata using a REST API Get endpoint. This issue affects Apache Superset version 1.5.2 and prior versions and version 2.0.0.

AI分析AI驱动

受影响产品

apachesuperset
apachesuperset
2.0.0
apachesuperset
2.0.0
apachesuperset
2.0.0

参考资料