Security Advisory

CVE-2024-6302

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-25 13:02:10
Last updated 2024-09-17 18:00:30
Assigner GitLab
State PUBLISHED

Description

Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower, allowing a local user to redact any message from users on the same server, given that they are able to send redaction events.