Количество 2
Количество 2
CVE-2026-24735
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache Answer: through 1.7.1. An unauthenticated API endpoint incorrectly exposes full revision history for deleted content. This allows unauthorized user to retrieve restricted or sensitive information. Users are recommended to upgrade to version 2.0.0, which fixes the issue.
GHSA-5w5r-8xc6-2xhw
Apache Answer Exposure of Private Personal Information to an Unauthorized Actor vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-24735 Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache Answer: through 1.7.1. An unauthenticated API endpoint incorrectly exposes full revision history for deleted content. This allows unauthorized user to retrieve restricted or sensitive information. Users are recommended to upgrade to version 2.0.0, which fixes the issue. | CVSS3: 7.5 | 0% Низкий | 5 дней назад | |
GHSA-5w5r-8xc6-2xhw Apache Answer Exposure of Private Personal Information to an Unauthorized Actor vulnerability | CVSS3: 7.5 | 0% Низкий | 4 дня назад |
Уязвимостей на страницу