Konga v0.14.9 is affected by an incorrect access control...
High severity
Unreviewed
Published
May 5, 2022
to the GitHub Advisory Database
•
Updated Nov 8, 2023
Description
Published by the National Vulnerability Database
May 4, 2022
Published to the GitHub Advisory Database
May 5, 2022
Last updated
Nov 8, 2023
Konga v0.14.9 is affected by an incorrect access control vulnerability where a specially crafted request can lead to privilege escalation.
References