Описание
Publify Business Logic Errors
Publify (formerly known as Typo) prior to version 9.2.7 is vulnerable to business logic errors.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2022-0524
- https://github.com/publify/publify/pull/1044
- https://github.com/publify/publify/commit/16fceecadbe80ab0ef846b62a12dc7bfff10b8c5
- https://github.com/publify/publify
- https://github.com/rubysec/ruby-advisory-db/blob/master/gems/publify_core/CVE-2022-0524.yml
- https://huntr.dev/bounties/bfffae58-b3cd-4e0e-b1f2-3db387a22c3d
Пакеты
Наименование
publify_core
rubygems
Затронутые версииВерсия исправления
< 9.2.7
9.2.7
Связанные уязвимости
CVSS3: 7.5
nvd
почти 4 года назад
Business Logic Errors in GitHub repository publify/publify prior to 9.2.7.