Apache-superset

Latest version: v4.1.2

The latest version of apache-superset with no known security vulnerabilities is 5.0.0rc2. We recommend installing version 5.0.0rc2.

The information on this page was curated by experts in our Cybersecurity Intelligence Team.

Latest release
v4.1.2 at April 1, 2025
License
Apache-2.0 (Apache License 2.0)

Description

A modern, enterprise-ready business intelligence web application

Resources

Vulnerabilities (89)

See all vulnerabilities
Affected versions:

<3.1.3 | >=4.0.0,<4.0.1

An Improper Input Validation vulnerability in Apache Superset …
Affected versions:

<=1.5.2 | ==2.0.0

Dashboard rendering does not sufficiently sanitize the content…
Affected versions:

<=1.5.2 | ==2.0.0

An authenticated attacker with write CSS template permissions …
Affected versions:

<=1.5.2 | ==2.0.0

Upload data forms do not correctly render user input leading t…
Affected versions:

<=1.5.2 | ==2.0.0

Two legacy REST API endpoints for approval and request access …
Affected versions:

<=1.5.2 | ==2.0.0

When explicitly enabling the feature flag 'DASHBOARD_CACHE' (d…

Versions (65)

See all versions

Has known vulnerabilities

  • 5.0.0rc2
  • 5.0.0rc1
  • 4.1.2
  • 4.1.2rc1
  • 4.1.1
  • 4.1.1rc1
  • 4.1.0
  • 4.1.0rc4
  • 4.1.0rc3
  • 4.1.0rc2
  • 4.0.2
  • 4.0.1
  • 4.0.0
  • 4.0.0rc2
  • 4.0.0rc1
  • 3.1.3
  • 3.1.2
  • 3.1.1
  • 3.1.0
  • 3.1.0rc4