Vulnerabilities > Apache > Submarine > 0.7.0

DATE CVE VULNERABILITY TITLE RISK
2023-11-22 CVE-2023-37924 SQL Injection vulnerability in Apache Submarine 0.7.0
Apache Software Foundation Apache Submarine has an SQL injection vulnerability when a user logs in.
network
low complexity
apache CWE-89
critical
9.8
2023-11-20 CVE-2023-46302 Deserialization of Untrusted Data vulnerability in Apache Submarine 0.7.0
Apache Software Foundation Apache Submarine has a bug when serializing against yaml.
network
low complexity
apache CWE-502
critical
9.8