Metrics
Affected Vendors & Products
Mon, 09 Jun 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 09 Jun 2025 11:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Redash up to 10.1.0/25.1.0. It has been rated as critical. This issue affects the function run_query of the file /query_runner/python.py of the component getattr Handler. The manipulation leads to sandbox issue. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Redash getattr python.py run_query sandbox | |
Weaknesses | CWE-264 CWE-265 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-09T11:00:14.520Z
Updated: 2025-06-09T15:51:34.307Z
Reserved: 2025-06-08T17:53:18.632Z
Link: CVE-2025-5874

Updated: 2025-06-09T15:51:29.484Z

Status : Awaiting Analysis
Published: 2025-06-09T11:15:22.440
Modified: 2025-06-09T12:15:47.880
Link: CVE-2025-5874

No data.