CLEANSTART-2026-MQ51708

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-MQ51708.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-MQ51708
Upstream
  • CVE-2026-45409
  • ghsa-2h4p-vjrc-8xpq
  • ghsa-5239-wwwm-4pmq
  • ghsa-537c-gmf6-5ccf
  • ghsa-65pc-fj4g-8rjx
  • ghsa-68rp-wp8r-4726
  • ghsa-6v7p-g79w-8964
  • ghsa-mf9v-mfxr-j63j
  • ghsa-mf9w-mj56-hr94
  • ghsa-qccp-gfcp-xxvc
  • ghsa-v92g-xgxw-vvmm
Published
2026-09-10T02:15:42Z
Modified
2026-09-10T03:15:04Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
sqlparse is a non-validating SQL parser module for Python
Details

Multiple security vulnerabilities affect the apache-superset package. sqlparse is a non-validating SQL parser module for Python. See references for individual vulnerability details.

References

Affected packages

CleanStart / apache-superset

Package

Name
apache-superset

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
5.0.0-r9

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-MQ51708.json"