Espressif Esp idf v5.3.0 is vulnerable to Insecure Permissions resulting in Authentication bypass. In the reconnection phase, the device reuses the session key from a previous connection session, creating an opportunity for attackers to execute security bypass attacks.
The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.