Missing Authorization in GitHub repository saleor/saleor prior to 3.1.2.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://huntr.dev/bounties/88ae4cbc-c697-401b-8b04-7dc4e03ad8eb | exploit third party advisory patch |
https://github.com/saleor/saleor/commit/521dfd6394f3926a77c60d8633c058e16d0f916d | third party advisory patch |