Improper Access Control in GitHub repository chocobozzz/peertube prior to 4.1.0.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
https://huntr.dev/bounties/d1faa10f-0640-480c-bb52-089adb351e6e | exploit third party advisory patch |
https://github.com/chocobozzz/peertube/commit/6ea9295b8f5dd7cc254202a79aad61c666cc4259 | third party advisory patch |