CVE-2022-43719: Apache Superset vulnerable to Cross-Site Request Forgery via legacy REST API endpoints
(updated )
Two legacy REST API endpoints for approval and request access are vulnerable to cross site request forgery. This issue affects Apache Superset version 1.5.2 and prior versions and version 2.0.0.
References
Code Behaviors & Features
Detect and mitigate CVE-2022-43719 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →