CVE-2024-12368

Publication date

2025-02-25 18:10:12

Family

odoo

State

PUBLISHED

Description

Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.