Description
Insecure Permissions vulnerability found in OpenGoofy Hippo4j v.1.4.3 allows attacker to obtain sensitive information via the ConfigVerifyController function of the Tenant Management module.
Remediation
References
https://github.com/opengoofy/hippo4j/issues/1060
Related Vulnerabilities
CVE-2023-34235 Vulnerability in npm package @strapi/database
CVE-2022-41224 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2023-33265 Vulnerability in maven package com.hazelcast:hazelcast
CVE-2023-29211 Vulnerability in maven package org.xwiki.platform:xwiki-platform-wiki-ui-mainwiki
CVE-2020-28471 Vulnerability in npm package properties-reader