dataiku 漏洞与 CVE 列表(5)

产品(CPE): — CVE 数: 5

dataiku 漏洞概览

汇总 dataiku 相关全部产品的 CVE 与安全漏洞情报,包括 CVSS、EPSS、公开时间与漏洞情报数据。

已披露问题常与 路径处理缺陷 相关,可能在 软件部署与生产负载 场景中带来 文件覆盖 等暴露风险。

相关漏洞数据主要来源于公开漏洞披露与安全公告,可用于评估历史漏洞暴露面与修复优先级。

漏洞分布趋势(近 24 个月)

显示 155 CVE 数
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
CVE 摘要 来源 最高 CVSS EPSS % 公开时间 更新时间
CVE-2023-51717 Dataiku DSS before 11.4.5 and 12.4.1 has Incorrect Access Control that could lead to a full authentication bypass. [email protected] 9.8 0.61% 2024-01-09 2025-06-16
CVE-2023-24045 In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying the target username in a download request. [email protected] 6.5 0.75% 2023-03-01 2025-03-10
CVE-2021-27225 In Dataiku DSS before 8.0.6, insufficient access control in the Jupyter notebooks integration allows users (who have coding permissions) to read and overwrite notebooks in projects that they are not authorized to access. [email protected] 5.4 0.52% 2021-03-01 2024-11-21
CVE-2020-8817 Dataiku DSS before 6.0.5 allows attackers write access to the project to modify the "Created by" metadata. [email protected] 8.1 0.89% 2020-09-14 2024-11-21
CVE-2018-10732 The REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a username is valid) because of profile pictures visibility. [email protected] 5.3 1.61% 2018-05-28 2024-11-21
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
cvelogic Threat Intelligence