CVE-2020-13922

Publication date

2021-01-11 09:40:19

Family

apache

State

PUBLISHED

Description

Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API interface.