Improper Access Control in GitHub repository janeczku/calibre-web prior to 0.6.16.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://github.com/janeczku/calibre-web/commit/3b216bfa07ec7992eff03e55d61732af6df9bb92 | third party advisory patch |
https://huntr.dev/bounties/370538f6-5312-4c15-9fc0-b4c36ac236fe | issue tracking patch exploit third party advisory |