apache-superset vulnerabilities

A modern, enterprise-ready business intelligence web application

  • latest version

    4.1.1

  • latest non vulnerable version

  • first published

    5 years ago

  • latest version published

    20 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the apache-superset package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    SQL Injection

    [,4.1.0rc2)
    • H
    Improper Authorization

    [2.0.0,4.1.0rc3)
    • L
    SQL Injection

    [,4.0.2)
    • M
    Arbitrary File Read

    [,3.1.3)[4.0.0,4.0.1)
    • M
    Incorrect Authorization

    [,3.1.2)[4.0.0rc1,4.0.0rc2)
    • M
    Cross-site Scripting (XSS)

    [,2.1.0)
    • M
    Improper Authorization

    [,3.0.4)[3.1.0,3.1.1)
    • M
    Insertion of Sensitive Information into Log File

    [,3.0.4)[3.1.0rc1,3.1.1)
    • M
    Improper Authorization

    [,3.0.4)[3.1.0rc1,3.1.1)
    • M
    Incorrect Authorization

    [,3.0.4)[3.1.0rc1,3.1.1)
    • M
    SQL Injection

    [,3.0.4)[3.1.0rc1,3.1.1)
    • M
    Cross-site Scripting (XSS)

    [,3.0.3)
    • M
    Uncontrolled Resource Consumption

    [,2.1.3)[3.0.0,3.0.2)
    • M
    SQL Injection

    [,2.1.3)[3.0.0,3.0.2)
    • H
    Incorrect Authorization

    [,2.1.3)[3.0.0,3.0.2)
    • M
    Allocation of Resources Without Limits or Throttling

    [,2.1.3)[3.0.0rc1,3.0.0)
    • M
    Incorrect Default Permissions

    [,2.1.2)
    • M
    Open Redirect

    [,3.0.0)
    • M
    Cross-site Scripting (XSS)

    [,2.1.2)
    • M
    Incorrect Authorization

    [,2.1.2)
    • M
    Information Exposure

    [,3.0.0)
    • M
    Information Exposure

    [,2.1.1)
    • M
    Improper Preservation of Permissions

    [,2.1.1)
    • L
    Improper Input Validation

    [,2.1.1)
    • M
    Deserialization of Untrusted Data

    [1.5.0,2.1.1)
    • M
    Server-side Request Forgery (SSRF)

    [,2.1.1)
    • M
    Incorrect Authorization

    [,2.1.1)
    • M
    Incorrect Authorization

    [,2.1.1)
    • M
    Access Restriction Bypass

    [,2.1.1)
    • M
    Server-side Request Forgery (SSRF)

    [,2.1.0)
    • M
    Information Exposure

    [1.3.0,2.1.0)
    • H
    Insecure Default Initialization of Resource

    [,2.1.0)
    • L
    Access Restriction Bypass

    [,2.1.0)
    • L
    Open Redirect

    [,1.5.3)[2.0.0,2.0.1)
    • M
    Cross-site Request Forgery (CSRF)

    [,1.5.3)[2.0.0,2.0.1)
    • M
    Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

    [,1.5.3)[2.0.0,2.0.1)
    • M
    Improper Access Control

    [,1.5.3)[2.0.0,2.0.1)
    • M
    SQL Injection

    [,1.5.3)[2.0.0,2.0.1)
    • M
    Cross-site Scripting (XSS)

    [,1.5.3)[2.0.0,2.0.1)
    • L
    Cross-site Scripting (XSS)

    [,1.5.3)[2.0.0,2.0.1)
    • M
    Information Exposure

    [,1.5.1)
    • C
    SQL Injection

    [,1.4.2)
    • M
    Insufficiently Protected Credentials

    [,1.4.0)
    • H
    Improper Output Neutralization for Logs

    [,1.3.2)
    • M
    Improper Output Neutralization for Logs

    [,1.3.2)
    • M
    Insufficiently Protected Credentials

    [,1.3.2)
    • M
    Cross-site Scripting (XSS)

    [,1.2.0)
    • M
    SQL Injection

    [,1.3.1)
    • M
    Open Redirect

    [,1.1.0)
    • H
    Cross-site Scripting (XSS)

    [,0.38.1)
    • M
    Cross-site Scripting (XSS)

    [,0.36.0)
    • M
    Insecure Defaults

    [,0.35.1)
    • M
    Cross-site Scripting (XSS)

    [,0.34.0)
    • M
    Cross-site Scripting (XSS)

    [,0.34.0)
    • C
    Arbitrary Code Execution

    [,0.34.0)
    • M
    Cross-site Scripting (XSS)

    [,0.34.0)
    • M
    Information Exposure

    [,0.37.2)
    • H
    Remote Code Execution (RCE)

    [,0.37.1)
    • M
    Information Exposure

    [,0.34.0)
    • M
    Information Exposure

    [,0.34.0)
    • M
    Information Exposure

    [0.34.0,0.35.2)

    Package versions

    1 - 61 of 61 Results
    versionpublisheddirect vulnerabilities
    4.1.120 Nov, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.1.1rc116 Nov, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.1.013 Nov, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.1.0rc42 Nov, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.1.0rc316 Oct, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    4.1.0rc226 Aug, 2024
    • 0
      C
    • 1
      H
    • 0
      M
    • 0
      L
    4.0.22 Jul, 2024
    • 0
      C
    • 1
      H
    • 1
      M
    • 0
      L
    4.0.113 May, 2024
    • 0
      C
    • 1
      H
    • 1
      M
    • 1
      L
    4.0.08 Apr, 2024
    • 0
      C
    • 1
      H
    • 2
      M
    • 1
      L
    4.0.0rc22 Apr, 2024
    • 0
      C
    • 1
      H
    • 1
      M
    • 1
      L
    4.0.0rc120 Feb, 2024
    • 0
      C
    • 1
      H
    • 2
      M
    • 1
      L
    3.1.39 May, 2024
    • 0
      C
    • 1
      H
    • 1
      M
    • 1
      L
    3.1.23 Apr, 2024
    • 0
      C
    • 1
      H
    • 2
      M
    • 1
      L
    3.1.120 Feb, 2024
    • 0
      C
    • 1
      H
    • 3
      M
    • 1
      L
    3.1.018 Jan, 2024
    • 0
      C
    • 1
      H
    • 8
      M
    • 1
      L
    3.1.0rc49 Jan, 2024
    • 0
      C
    • 1
      H
    • 7
      M
    • 1
      L
    3.1.0rc318 Dec, 2023
    • 0
      C
    • 1
      H
    • 7
      M
    • 1
      L
    3.1.0rc211 Dec, 2023
    • 0
      C
    • 1
      H
    • 7
      M
    • 1
      L
    3.1.0rc128 Nov, 2023
    • 0
      C
    • 1
      H
    • 7
      M
    • 1
      L
    3.0.420 Feb, 2024
    • 0
      C
    • 1
      H
    • 3
      M
    • 1
      L
    3.0.317 Jan, 2024
    • 0
      C
    • 1
      H
    • 8
      M
    • 1
      L
    3.0.222 Nov, 2023
    • 0
      C
    • 1
      H
    • 9
      M
    • 1
      L
    3.0.118 Oct, 2023
    • 0
      C
    • 2
      H
    • 11
      M
    • 1
      L
    3.0.018 Sep, 2023
    • 0
      C
    • 2
      H
    • 11
      M
    • 1
      L
    3.0.0rc413 Sep, 2023
    • 0
      C
    • 1
      H
    • 12
      M
    • 1
      L
    3.0.0rc324 Aug, 2023
    • 0
      C
    • 1
      H
    • 12
      M
    • 1
      L
    3.0.0rc227 Jul, 2023
    • 0
      C
    • 1
      H
    • 12
      M
    • 1
      L
    3.0.0rc13 Jul, 2023
    • 0
      C
    • 1
      H
    • 12
      M
    • 1
      L
    2.1.316 Dec, 2023
    • 0
      C
    • 1
      H
    • 11
      M
    • 1
      L
    2.1.223 Nov, 2023
    • 0
      C
    • 2
      H
    • 14
      M
    • 1
      L
    2.1.129 Aug, 2023
    • 0
      C
    • 2
      H
    • 17
      M
    • 1
      L
    2.1.1rc318 Aug, 2023
    • 0
      C
    • 2
      H
    • 24
      M
    • 2
      L
    2.1.1rc224 Jul, 2023
    • 0
      C
    • 2
      H
    • 24
      M
    • 2
      L
    2.1.1rc116 Jun, 2023
    • 0
      C
    • 2
      H
    • 24
      M
    • 2
      L
    2.1.05 Apr, 2023
    • 0
      C
    • 2
      H
    • 24
      M
    • 2
      L
    2.0.120 Dec, 2022
    • 0
      C
    • 3
      H
    • 27
      M
    • 3
      L
    2.0.014 Jul, 2022
    • 0
      C
    • 3
      H
    • 32
      M
    • 5
      L
    1.5.313 Jan, 2023
    • 0
      C
    • 2
      H
    • 27
      M
    • 3
      L
    1.5.227 Sep, 2022
    • 0
      C
    • 2
      H
    • 32
      M
    • 5
      L
    1.5.18 Jun, 2022
    • 0
      C
    • 2
      H
    • 32
      M
    • 5
      L
    1.5.028 Apr, 2022
    • 0
      C
    • 2
      H
    • 33
      M
    • 5
      L
    1.4.229 Mar, 2022
    • 0
      C
    • 2
      H
    • 32
      M
    • 5
      L
    1.4.19 Feb, 2022
    • 1
      C
    • 2
      H
    • 32
      M
    • 5
      L
    1.4.019 Jan, 2022
    • 1
      C
    • 2
      H
    • 32
      M
    • 5
      L
    1.3.220 Oct, 2021
    • 1
      C
    • 2
      H
    • 33
      M
    • 5
      L
    1.3.128 Sep, 2021
    • 1
      C
    • 3
      H
    • 35
      M
    • 5
      L
    1.3.021 Aug, 2021
    • 1
      C
    • 3
      H
    • 36
      M
    • 5
      L
    1.2.02 Jul, 2021
    • 1
      C
    • 3
      H
    • 35
      M
    • 5
      L
    1.1.013 Apr, 2021
    • 1
      C
    • 3
      H
    • 36
      M
    • 5
      L
    1.0.16 Feb, 2021
    • 1
      C
    • 3
      H
    • 37
      M
    • 5
      L
    1.0.021 Jan, 2021
    • 1
      C
    • 3
      H
    • 37
      M
    • 5
      L
    0.38.11 Mar, 2021
    • 1
      C
    • 3
      H
    • 37
      M
    • 5
      L
    0.38.024 Nov, 2020
    • 1
      C
    • 4
      H
    • 37
      M
    • 5
      L
    0.37.227 Sep, 2020
    • 1
      C
    • 4
      H
    • 37
      M
    • 5
      L
    0.37.115 Sep, 2020
    • 1
      C
    • 4
      H
    • 38
      M
    • 5
      L
    0.37.014 Aug, 2020
    • 1
      C
    • 5
      H
    • 38
      M
    • 5
      L
    0.36.017 Apr, 2020
    • 1
      C
    • 5
      H
    • 38
      M
    • 5
      L
    0.35.215 Jan, 2020
    • 1
      C
    • 5
      H
    • 39
      M
    • 5
      L
    0.35.126 Nov, 2019
    • 1
      C
    • 5
      H
    • 40
      M
    • 5
      L
    0.34.112 Oct, 2019
    • 1
      C
    • 5
      H
    • 41
      M
    • 5
      L
    0.34.018 Sep, 2019
    • 1
      C
    • 5
      H
    • 41
      M
    • 5
      L