CVE-2022-32170

Published Sep 28, 2022

Last updated a year ago

Overview

Description
The “Bytebase” application does not restrict low privilege user to access admin “projects“ for which an unauthorized user can view the “projects“ created by “Admin” and the affected endpoint is “/api/project?user=${userId}”.
Source
vulnerabilitylab@mend.io
NVD status
Modified

Weaknesses

vulnerabilitylab@mend.io
CWE-285

Social media

Hype score
Not currently trending

Configurations