Description
Improper Privilege Management in GitHub repository nocodb/nocodb prior to 0.91.7+.
Remediation
References
https://github.com/nocodb/nocodb/commit/269a19c2ad89a0e8a7596498e3806ff2ec1040c2
https://huntr.dev/bounties/156f405b-21d6-4384-9bff-17ebfe484e20
Related Vulnerabilities
CVE-2021-26707 Vulnerability in npm package merge-deep
CVE-2022-22965 Vulnerability in maven package org.springframework.boot:spring-boot-starter-web
CVE-2021-21119 Vulnerability in npm package electron
CVE-2020-7751 Vulnerability in maven package org.webjars.npm:pathval
CVE-2023-29016 Vulnerability in maven package io.goobi.viewer:viewer-core