CVE-2023-30952

Published Aug 3, 2023

Last updated a year ago

Overview

Description
A security defect was discovered in Foundry Issues that enabled users to create convincing phishing links by editing the request sent when creating an Issue. This defect was resolved in Frontend release 6.228.0 .
Source
cve-coordination@palantir.com
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
4.3
Impact score
1.4
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Severity
MEDIUM

Weaknesses

nvd@nist.gov
NVD-CWE-Other
cve-coordination@palantir.com
CWE-20

Social media

Hype score
Not currently trending

Configurations