Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4f49-557j-w78c

Опубликовано: 25 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1

Описание

The permission check for the frontend management update flow verified a different event than the one the request went on to modify. A user with frontend event management access could therefore modify events belonging to other organizers.

The permission check for the frontend management update flow verified a different event than the one the request went on to modify. A user with frontend event management access could therefore modify events belonging to other organizers.

EPSS

Процентиль: 11%
0.00207
Низкий

7.1 High

CVSS4

Дефекты

CWE-639

Связанные уязвимости

nvd
20 дней назад

The permission check for the frontend management update flow verified a different event than the one the request went on to modify. A user with frontend event management access could therefore modify events belonging to other organizers.

EPSS

Процентиль: 11%
0.00207
Низкий

7.1 High

CVSS4

Дефекты

CWE-639