-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability stems from improper handling of nested SQL in SQLLab. Core query execution functions like execute_sql_statement and SQLQueryRunner.execute would be responsible for parsing/validating SQL input. The lack of recursive authorization checks for nested queries would allow bypassing data scoping. These functions are central to SQL processing in SQLLab and match the described vulnerability pattern, though exact implementation details are inferred without patch diffs.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| apache-superset | pip | <= 3.0.3 | 3.0.4 |
| apache-superset | pip | >= 3.1.0, < 3.1.1 | 3.1.1 |
Ongoing coverage of React2Shell