Live data from GitHub and PyPI, updated daily.
Data last fetched: 2026-05-15
10 active CVEs reported via OSV.dev
Apache Superset Incorrect Authorization vulnerability
Apache Superset: Error verbosity exposes metadata in analytics databases
Apache Superset vulnerable to improper SQL authorization
Apache Superset: Lower privilege users are able to create Role when FAB_ADD_SECURITY_API is enabled
Apache Superset Allocation of Resources Without Limits or Throttling vulnerability
Apache Superset Improper Authorization allows low-privileged users to bypass access controls
Apache Superset: Improper authorization validation on dashboards and charts import
Apache Superset allowed for database connections password leak for authenticated users
Apache Superset: Incomplete DISALLOWED_SQL_FUNCTIONS default list for ClickHouse engine
Apache Superset Server Side Request Forgery vulnerability
Other Big Data projects in the Python ecosystem worth evaluating.
Get SLA-backed support, security patches, and direct access to senior engineers for Apache Superset โ without relying on volunteer maintainers.
Talk to an Expert โ