CVE-2022-44009

Publication date

2022-12-05 00:00:00

Family

mitre

State

PUBLISHED

Description

Improper access control in Key-Value RBAC in StackStorm version 3.7.0 didnt check the permissions in Jinja filters, allowing attackers to access K/V pairs of other users, potentially leading to the exposure of sensitive Information.