Security Advisory

CVE-2022-31666

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-11-14 11:32:32
Last updated 2024-11-14 14:10:46
Assigner vmware
State PUBLISHED

Description

Harbor fails to validate user permissions while deleting Webhook policies, allowing malicious users to view, update and delete Webhook policies of other users.  The attacker could modify Webhook policies configured in other projects.