Security Advisory

CVE-2022-44009

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-05 00:00:00
Last updated 2025-04-24 13:56:33
Assigner mitre
State PUBLISHED

Description

Improper access control in Key-Value RBAC in StackStorm version 3.7.0 didnt check the permissions in Jinja filters, allowing attackers to access K/V pairs of other users, potentially leading to the exposure of sensitive Information.