AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-49734

HIGH · CVSS 7.7 EPSS 0.94%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-12-19 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.7. It affects Apache.

CVE
CVE-2023-49734
Severity
HIGH
CVSS
7.7
EPSS
0.94%
Apache

Original NVD Description

An authenticated Gamma user has the ability to create a dashboard and add charts to it, this user would automatically become one of the owners of the charts allowing him to incorrectly have write permissions to these charts.This issue affects Apache Superset: before 2.1.2, from 3.0.0 before 3.0.2. Users are recommended to upgrade to version 3.0.2 or 2.1.3, which fixes the issue.

Related CVEs

Other vulnerabilities affecting the same vendor(s)