Alldata V0.4.6 is vulnerable to Incorrect Access Control....
Critical severity
Unreviewed
Published
Apr 2, 2024
to the GitHub Advisory Database
•
Updated Jul 11, 2024
Description
Published by the National Vulnerability Database
Apr 2, 2024
Published to the GitHub Advisory Database
Apr 2, 2024
Last updated
Jul 11, 2024
Alldata V0.4.6 is vulnerable to Incorrect Access Control. A total of many modules interface documents have been leaked.For example, the /api/system/v2/api-docs module.
References