logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2021-43786

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2021-43786

Description:
Nodebb is an open source Node.js based forum software. In affected versions incorrect logic present in the token verification step unintentionally allowed master token access to the API. The vulnerability has been patch as of v1.18.5. Users are advised to upgrade as soon as possible.
Last updated date:
10/27/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/27/2022
Reference url to background

https://blog.sonarsource.com/nodebb-remote-code-execution-with-one-shot/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy