Description
Improper Access Control in GitHub repository plantuml/plantuml prior to 1.2023.9.
Remediation
References
https://github.com/plantuml/plantuml/commit/fbe7fa3b25b4c887d83927cffb1009ec6cb8ab1e
https://huntr.dev/bounties/fa741f95-b53c-4ed7-b157-e32c5145164c
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FV7XL3CY3K3K5ER3ASMEQA546MIQQ7QM/
Related Vulnerabilities
CVE-2023-26113 Vulnerability in npm package collection.js
CVE-2020-1912 Vulnerability in npm package hermes-engine
CVE-2023-41900 Vulnerability in maven package org.eclipse.jetty:jetty-openid
CVE-2023-3696 Vulnerability in npm package mongoose
CVE-2023-30543 Vulnerability in npm package @web3-react/metamask