Total vulnerabilities in the database
All Cube.js deployments that use affected versions of @cubejs-backend/api-gateway
with default express authentication middleware in production environment are affected.
@cubejs-backend/[email protected]
Override default authentication express middleware: https://cube.dev/docs/@cubejs-backend-server-core#options-reference-check-auth-middleware
If you have any questions or comments about this advisory:
Software | From | Fixed in |
---|---|---|
![]() |
0.11.0 | 0.11.17 |