Improper Authorization in GitHub repository janeczku/calibre-web prior to 0.6.16.
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
https://huntr.dev/bounties/d7498799-4797-4751-b5e2-b669e729d5db | patch exploit third party advisory issue tracking |
https://github.com/janeczku/calibre-web/commit/e0e04220109920575179a8f924543449c6de0706 | third party advisory patch |