Description
Improper Privilege Management in GitHub repository nocodb/nocodb prior to 0.91.7+.
Remediation
References
https://github.com/nocodb/nocodb/commit/269a19c2ad89a0e8a7596498e3806ff2ec1040c2
https://huntr.dev/bounties/156f405b-21d6-4384-9bff-17ebfe484e20
Related Vulnerabilities
CVE-2010-4172 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2022-25898 Vulnerability in maven package org.webjars.bowergithub.kjur:jsrsasign
CVE-2022-1274 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2022-25875 Vulnerability in npm package svelte
CVE-2023-38695 Vulnerability in npm package @simonsmith/cypress-image-snapshot