Bifrost is a middleware package which can synchronize MySQL/MariaDB binlog data to other types of databases. Versions 1.8.6-release and prior are vulnerable to authentication bypass when using HTTP basic authentication. This may allow group members who only have read permissions to write requests when they are normally forbidden from doing so. Version 1.8.7-release contains a patch. There are currently no known workarounds.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2022-09-26T13:15:14
Updated: 2024-08-03T12:00:42.533Z
Reserved: 2022-09-02T00:00:00
Link: CVE-2022-39219
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-09-26T14:15:10.180
Modified: 2024-11-21T07:17:48.827
Link: CVE-2022-39219
Redhat
No data.