0.89 Apache Superset: A story of insecure default keys, thousands of vulnerable systems, few paying attention

News


<< back

Apache Superset: A story of insecure default keys, thousands of vulnerable systems, few paying attention
Date: 2023-04-26 [theregister.co.uk]

Two out of three public-facing app instances open to hijacking

Apache Superset until earlier this year shipped with an insecure default configuration that miscreants could exploit to login and take over the data visualization application, steal data, and execute malicious code.
READ THE FULL NEWS >>

×