Description
Installations, where crafter-search is not protected, allow unauthenticated remote attackers to create, view, and delete search indexes.
Remediation
References
https://docs.craftercms.org/en/3.1/security/advisory.html#cv-2021120107
Related Vulnerabilities
CVE-2019-10428 Vulnerability in maven package org.jenkins-ci.plugins:aqua-security-scanner
CVE-2013-4940 Vulnerability in npm package yui
CVE-2018-5382 Vulnerability in maven package org.bouncycastle:bcprov-jdk14
CVE-2023-35141 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2017-1000118 Vulnerability in maven package com.typesafe.akka:akka-http-core_2.11