CVE-2026-23984 | Apache Superset up to 5.x authorization
A vulnerability categorized as critical has been discovered in Apache Superset up to 5.x. The impacted element is an unknown function. Executing a manipulation can lead to incorrect authorization.
This vulnerability is registered as CVE-2026-23984. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.