Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8fvm-9x23-86pj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The Add Collaborator allows unlimited data via the author parameter, even if the data does not match anything in the database.

An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The Add Collaborator allows unlimited data via the author parameter, even if the data does not match anything in the database.

EPSS

Процентиль: 46%
0.00237
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.3
nvd
около 6 лет назад

An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The Add Collaborator allows unlimited data via the author parameter, even if the data does not match anything in the database.

EPSS

Процентиль: 46%
0.00237
Низкий

Дефекты

CWE-20