CVE-2024-53947 | Apache Superset up to 4.0.x sql injection
A vulnerability was found in Apache Superset up to 4.0.x and classified as critical. Affected by this issue is the function query_to_xml_and_xmlschema/table_to_xml/table_to_xml_and_xmlschema. The manipulation leads to sql injection.
This vulnerability is handled as CVE-2024-53947. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.