CVE-2025-27696 | Apache Superset up to 4.1.1 Dashboard improper authorization (EUVD-2025-14507 / Nessus ID 242975)
A vulnerability described as critical has been identified in Apache Superset up to 4.1.1. This affects an unknown part of the component Dashboard. The manipulation results in improper authorization.
This vulnerability is identified as CVE-2025-27696. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.