Improper Access Control in GitHub repository tooljet/tooljet prior to v1.19.0.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://huntr.dev/bounties/86881f9e-ca48-49b5-9782-3c406316930c | exploit third party advisory patch |
https://github.com/tooljet/tooljet/commit/b9fa229bcae356cbb33300b31483e97e6ea140a7 | third party advisory patch |