Security Advisory

CVE-2021-31158

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-05-19 18:37:15
Last updated 2024-08-03 22:48:14
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In the Query Engine in Couchbase Server 6.5.x and 6.6.x through 6.6.1, Common Table Expression queries were not correctly checking the user's permissions, allowing read-access to resources beyond what those users were explicitly allowed to access.