CVE-2022-32170
- Reference to the description:
- Description:
- The “Bytebase” application does not restrict low privilege user to access admin “projects“ for which an unauthorized user can view the “projects“ created by “Admin” and the affected endpoint is “/api/project?user=${userId}”.
- Last updated date:
- 10/03/2022
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 10/03/2022
- Reference url to background