In CLA-Assistant, versions before 2.8.5, due to improper access control an authenticated user could access API endpoints which are not intended to be used by the user. This could impact the integrity of the application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2021-01-12T14:21:12
Updated: 2024-08-03T18:16:22.458Z
Reserved: 2020-12-30T00:00:00
Link: CVE-2021-21471
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-01-12T15:15:16.343
Modified: 2024-11-21T05:48:26.367
Link: CVE-2021-21471
Redhat
No data.