Vulnerability CVE-2023-24045


Published: 2023-03-01

Description:
In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying the target username in a download request.

 References:
https://dataiku.com
https://gist.github.com/alert3/04e2d0a934001180104f846cfa00552b

Copyright 2026, cxsecurity.com

 

Back to Top