Security Advisory

CVE-2021-35970

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-30 14:18:10
Last updated 2024-08-04 00:47:43
Assigner mitre
State PUBLISHED

Description

Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via GraphQL because permission checks use an incorrect data type.