Skip to content
This repository has been archived by the owner on Feb 26, 2021. It is now read-only.

Update to v0.2.x

Moderate
dudeisbrendan03 published GHSA-g88j-vg6f-4w2j May 27, 2019 · 1 comment

Package

No package listed

Affected versions

< 0.2.0

Patched versions

> 0.2.208

Description

Impact

Any user is able to access each-others data and may run any handler action without authentication (on stock server).

Patches

New features have been deployed in any version after and including: 0.2.208

Workarounds

Self implementation.

References

Are there any links users can visit to find out more?

For more information

If you have any questions or comments about this advisory:

Severity

Moderate

CVE ID

No known CVE

Weaknesses

No CWEs