A flaw was found in Red Hat Quay, where it does not properly protect the authorization token when authorizing email addresses for repository email notifications. This flaw allows an attacker to add email addresses they do not own to repository notifications.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-20330 | A flaw was found in Red Hat Quay, where it does not properly protect the authorization token when authorizing email addresses for repository email notifications. This flaw allows an attacker to add email addresses they do not own to repository notifications. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T16:25:43.401Z
Reserved: 2020-10-27T00:00:00
Link: CVE-2020-27831
No data.
Status : Modified
Published: 2021-05-27T00:15:08.290
Modified: 2024-11-21T05:21:53.813
Link: CVE-2020-27831
OpenCVE Enrichment
No data.
EUVD