Description
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to become the lead node in a target cluster via manipulation of the variable terms in RaftContext.
Remediation
References
https://docs.google.com/presentation/d/1C_IpRfSU-9FMezcHCFZ-qg-15JO-W36yvqcnzI8sQs8/edit?usp=sharing
Related Vulnerabilities
CVE-2021-46365 Vulnerability in maven package info.magnolia:magnolia-core
CVE-2017-16130 Vulnerability in npm package exxxxxxxxxxx
CVE-2020-8137 Vulnerability in npm package uppy
CVE-2023-23848 Vulnerability in maven package org.jenkins-ci.plugins:synopsys-coverity
CVE-2021-35513 Vulnerability in maven package org.webjars.npm:mermaid