Improper Access Control in GitHub repository plantuml/plantuml prior to 1.2023.9.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://huntr.dev/bounties/fa741f95-b53c-4ed7-b157-e32c5145164c | patch third party advisory exploit |
https://github.com/plantuml/plantuml/commit/fbe7fa3b25b4c887d83927cffb1009ec6cb8ab1e | patch |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FV7XL3CY3K3K5ER3ASMEQA546MIQQ7QM/ | third party advisory mailing list |