CVE-2024-52313 - Apache Data All Environment Information Disclosure

2 weeks ago 10
ARTICLE AD BOX
CVE ID : CVE-2024-52313
Published : Nov. 9, 2024, 1:15 a.m. | 24 minutes ago
Description : An authenticated data.all user is able to manipulate a getDataset query to fetch additional information regarding the parent Environment resource that the user otherwise would not able to fetch by directly querying the object via getEnvironment in data.all.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article