Description
Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API interface.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0018 | Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API interface. |
Github GHSA |
GHSA-qhh5-9738-g9mx | Incorrect Default Permissions in Apache DolphinScheduler |
References
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-02-13T16:27:28.158Z
Reserved: 2020-06-08T00:00:00.000Z
Link: CVE-2020-13922
No data.
Status : Modified
Published: 2021-01-11T10:15:13.283
Modified: 2024-11-21T05:02:09.327
Link: CVE-2020-13922
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA