Skip to content
Noroxi

redash records

6 published records for vendor redash.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
16.7%
Median publish → KEV
No record has entered KEV

All records

6 records
  • Server-Side Request Forgery (SSRF) in Redash

    HighCVSS 8.8No exploitEPSS 1%

    redash · redashNov 24, 2021

  • Insecure default configuration

    MediumCVSS 6.5Proof of conceptEPSS 8%

    redash · redashNov 24, 2021

  • Havoc Research discovered an authenticated Server-Side Request Forgery (SSRF) via the "JSON" data source of Redash open-source 8.0.0 and pri

    HighCVSS 7.2No exploitEPSS 1%

    redash · redashJun 11, 2020

  • Redash: Open redirect vulnerability in post-login redirect handling

    MediumCVSS 6.1No exploitEPSS 0%

    redash · redashJul 15, 2026

  • Vulnerability in Redash OAuth2 flows due to misuse of state field (should be a nonce)

    MediumCVSS 6.1No exploitEPSS 0%

    redash · redashNov 24, 2021

  • Redash 8.0.0 is affected by LDAP Injection.

    MediumCVSS 5.3No exploitEPSS 1%

    redash · redashMar 18, 2021