Beveiligingsadvies

CVE-2024-6302

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-25 13:02:10
Laatst bijgewerkt 2024-09-17 18:00:30
Toegewezen door GitLab
CVSS-score 8.1
Status PUBLISHED

Beschrijving

Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower, allowing a local user to redact any message from users on the same server, given that they are able to send redaction events.