A flaw was found in Red Hat Quay, where it does not properly protect the authorization token when authorizing email addresses for repository email notifications. This flaw allows an attacker to add email addresses they do not own to repository notifications.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2021-05-26T23:46:57
Updated: 2024-08-04T16:25:43.401Z
Reserved: 2020-10-27T00:00:00
Link: CVE-2020-27831
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-05-27T00:15:08.290
Modified: 2024-11-21T05:21:53.813
Link: CVE-2020-27831
Redhat