WhisperX tag archive

#cwe-327

This page collects WhisperX intelligence signals tagged #cwe-327. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (4)

The Lab · 2026-04-13 03:22:26 · GitHub Issues

1. Apache Superset Security Alert: High-Risk MD5 Hash Vulnerability in Public Interface Code

A high-severity security vulnerability has been flagged within the Apache Superset analytics platform, exposing a critical weakness in its cryptographic safeguards. The automated security scanner Bandit identified the use of the deprecated MD5 hashing algorithm within a core public interface file, a practice deemed ins...

The Lab · 2026-04-14 04:22:26 · GitHub Issues

2. HIGH-Severity Security Flaw in Cache Manager Tests: Weak MD5 Hash Usage Flagged by Bandit Scanner

A high-severity security vulnerability has been identified in a critical test file, exposing the use of a cryptographically weak MD5 hash function. The automated security scanner Bandit flagged the issue (Rule B324, CWE-327) in the file `tests/unit_tests/utils/test_cache_manager.py` at line 48. The finding explicitly w...

The Lab · 2026-04-14 04:22:29 · GitHub Issues

3. Apache Superset Security Alert: High-Risk MD5 Hash Vulnerability in Public Interface Code

A high-severity security vulnerability has been flagged within the Apache Superset analytics platform, exposing a critical weakness in its cryptographic implementation. The automated security scanner Bandit identified the use of the deprecated MD5 hash function within the `public_interfaces.py` utility module, a practi...

The Lab · 2026-04-14 05:22:34 · GitHub Issues

4. Apache Superset Security Alert: High-Risk Weak MD5 Hash in Core Hashing Utility

A high-severity security vulnerability has been flagged within the Apache Superset analytics platform, exposing a critical weakness in its core cryptographic hashing function. The automated scanner Bandit identified the use of the deprecated and cryptographically broken MD5 hash algorithm within the `superset/utils/has...