This is a duplicate for CVE-2023-46104. With correct CVE version ranges for affected Apache Superset.
Uncontrolled resource consumption can be triggered by authenticated attacker that uploads a malicious ZIP to import database, dashboards or datasets.
This vulnerability exists in Apache Superset versions up to and including 2.1.2 and versions 3.0.0, 3.0.1.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-02-14 12:15
Updated : 2024-02-14 14:16
NVD link : CVE-2024-23952
Mitre link : CVE-2024-23952
CVE.ORG link : CVE-2024-23952
JSON object : View
Products Affected
No product.
CWE
CWE-400
Uncontrolled Resource Consumption