CVE-2023-42504 Information

Description

An authenticated malicious user could initiate multiple concurrent requests each requesting multiple dashboard exports leading to a possible denial of service.

This issue affects Apache Superset: before 3.0.0

Reference

https://lists.apache.org/thread/yzq5gk1y9lyw6nxwd3xdkxg1djqw1h6l http://www.openwall.com/lists/oss-security/2023/11/28/6

Share on: