First published: Mon Apr 24 2023(Updated: )
Authorization Bypass Through User-Controlled Key in GitHub repository alfio-event/alf.io prior to 2.0-M4-2304.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Airbrake | <2.0-m4-2304 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2260 has been classified as a high severity vulnerability due to its potential for authorization bypass.
To fix CVE-2023-2260, update your alf.io software to version 2.0-M4-2304 or later.
CVE-2023-2260 is an authorization bypass vulnerability that allows attackers to exploit user-controlled keys.
Users of alf.io versions prior to 2.0-M4-2304 are affected by CVE-2023-2260.
Detailed information regarding CVE-2023-2260 can be found in the release notes and commit history on the alf.io GitHub repository.