Vulnerabilities > Apache > Superset > 1.0.0

DATE CVE VULNERABILITY TITLE RISK
2021-11-17 CVE-2021-42250 Improper Encoding or Escaping of Output vulnerability in Apache Superset
Improper output neutralization for Logs.
network
low complexity
apache CWE-116
4.0
2021-11-12 CVE-2021-41972 Unspecified vulnerability in Apache Superset
Apache Superset up to and including 1.3.1 allowed for database connections password leak for authenticated users.
network
low complexity
apache
4.0
2021-04-27 CVE-2021-28125 Open Redirect vulnerability in Apache Superset
Apache Superset up to and including 1.0.1 allowed for the creation of an external URL that could be malicious.
network
low complexity
apache CWE-601
6.1