CVE-2024-24773 - Bypassing Data Authorization in Apache Superset via Nested SQL Injection
Recently, a critical vulnerability — CVE-2024-24773 — was discovered in Apache Superset, a popular open-source data exploration and visualization platform. This flaw affects the handling of nested
CVE-2024-24779 - How Apache Superset’s Custom Roles Could Leak Your Confidential Data
A recent security vulnerability, CVE-2024-24779, was discovered in Apache Superset affecting versions before 3..4 and 3.1. before 3.1.1. This flaw lets
CVE-2024-24772 - Guest User SQL Injection & Info Leak in Apache Superset (Full Walkthrough & Exploit)
CVE-2024-24772 is a security vulnerability impacting Apache Superset, a popular data visualization platform used by organizations worldwide. This post will break down the issue in
CVE-2024-24027 - SQL Injection in Likeshop Before 2.5.7—How It Works, Exploit Details, and How to Protect Yourself
CVE-2024-24027 is a major security concern for anyone running the Likeshop e-commerce platform before version 2.5.7. This vulnerability allows attackers to run arbitrary
CVE-2024-25843 - How a Guest Could Hack PrestaShop Sites via "Import/Update Bulk Product from any Csv/Excel File Pro" Module
PrestaShop is a popular e-commerce platform used worldwide. Add-ons enhance its abilities, but sometimes they also introduce security risks. This is the case for the
Episode
00:00:00
00:00:00