The web application allows an unauthenticated remote...
Moderate severity
Unreviewed
Published
Sep 24, 2025
to the GitHub Advisory Database
•
Updated Sep 24, 2025
Description
Published by the National Vulnerability Database
Sep 24, 2025
Published to the GitHub Advisory Database
Sep 24, 2025
Last updated
Sep 24, 2025
The web application allows an unauthenticated remote attacker to learn information about existing user accounts with their corresponding role due to missing authentication for critical function.
References