Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-66x4-8gf5-hmj9

Опубликовано: 25 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower, allowing a local user to redact any message from users on the same server, given that they are able to send redaction events.

Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower, allowing a local user to redact any message from users on the same server, given that they are able to send redaction events.

EPSS

Процентиль: 38%
0.00167
Низкий

8.1 High

CVSS3

Дефекты

CWE-280

Связанные уязвимости

CVSS3: 8.1
nvd
больше 1 года назад

Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower, allowing a local user to redact any message from users on the same server, given that they are able to send redaction events.

EPSS

Процентиль: 38%
0.00167
Низкий

8.1 High

CVSS3

Дефекты

CWE-280