Improper Access Control in GitHub repository francoisjacquet/rosariosis prior to 10.9.3.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://huntr.dev/bounties/efe6ef47-d17c-4773-933a-4836c32db85c | third party advisory permissions required |
https://github.com/francoisjacquet/rosariosis/commit/6433946abfb34324616e833b1c00d0b2450753be | patch |