Exploit for CVE-2026-23980 — Authenticated error-based SQL injection in Apache Superset < 6.0.0 via sqlExpression bypass

Exploit for CVE-2026-23980 — Authenticated error-based SQL injection in Apache Superset < 6.0.0 via sqlExpression bypass

Published 12 Sep 2026Updated 12 Sep 20263 sources
CVSS 0.0 PoC CANDIDATE

Source timeline

Discovered through PoC-in-GitHubView source ↗