Описание
Publify has Improper Access Controls
A low-privileged user can modify and delete admin articles by changing the value of the article[id] parameter prior to 9.2.9.
Пакеты
Наименование
publify_core
rubygems
Затронутые версииВерсия исправления
< 9.2.9
9.2.9
Связанные уязвимости
CVSS3: 4.3
nvd
больше 3 лет назад
Authorization Bypass Through User-Controlled Key in GitHub repository publify/publify prior to 9.2.9.