Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-51717

    Dataiku DSS before 11.4.5 and 12.4.1 has Incorrect Access Control that could lead to a full authentication bypass.

    Last Modified: Jun 16, 2025
    Published: Jan 09, 2024

    CVE-2023-24045

    In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying the target username in a download request.

    Last Modified: Mar 10, 2025
    Published: Mar 01, 2023

    CVE-2021-27225

    In Dataiku DSS before 8.0.6, insufficient access control in the Jupyter notebooks integration allows users (who have coding permissions) to read and overwrite notebooks in projects that they are not authorized to access.

    Last Modified: Nov 21, 2024
    Published: Mar 01, 2021

    CVE-2020-8817

    Dataiku DSS before 6.0.5 allows attackers write access to the project to modify the "Created by" metadata.

    Last Modified: Nov 21, 2024
    Published: Sep 14, 2020

    CVE-2018-10732

    The REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a username is valid) because of profile pictures visibility.

    Last Modified: Nov 21, 2024
    Published: May 28, 2018
    Items Per Page
    Dataiku Vulnerabilities & Security CVEs | CVE-DB