Go package pydio/cells vulnerable to authorization bypass
Moderate severity
GitHub Reviewed
Published
May 30, 2023
to the GitHub Advisory Database
•
Updated Nov 11, 2023
Description
Published by the National Vulnerability Database
May 30, 2023
Published to the GitHub Advisory Database
May 30, 2023
Reviewed
May 31, 2023
Last updated
Nov 11, 2023
A vulnerability was found in Abstrium Pydio Cells 4.2.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Change Subscription Handler. The manipulation leads to authorization bypass. Upgrading to version 4.2.1 is able to address this issue. It is recommended to upgrade the affected component. VDB-230210 is the identifier assigned to this vulnerability.
References