Description
Insecure Permissions vulnerability found in OpenGoofy Hippo4j v.1.4.3 allows attacker to obtain sensitive information via the ConfigVerifyController function of the Tenant Management module.
Remediation
References
https://github.com/opengoofy/hippo4j/issues/1060
Related Vulnerabilities
CVE-2022-43432 Vulnerability in maven package org.jenkins-ci.plugins:xframium
CVE-2022-0219 Vulnerability in maven package io.github.skylot:jadx-core
CVE-2023-22461 Vulnerability in npm package @mattkrick/sanitize-svg
CVE-2023-4316 Vulnerability in npm package zod
CVE-2023-30525 Vulnerability in maven package org.jenkins-ci.plugins:reportportal