First published: Thu Jun 29 2023(Updated: )
A security defect was identified in Foundry workspace-server that enabled a user to bypass an authorization check and view settings related to 'Developer Mode'. This enabled users with insufficient privilege the ability to view and interact with Developer Mode settings in a limited capacity. A fix was deployed with workspace-server 7.7.0.
Credit: cve-coordination@palantir.com
Affected Software | Affected Version | How to fix |
---|---|---|
Palantir Foundry | <7.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-30955 is a security defect in Foundry workspace-server that allows users with insufficient privilege to view and interact with settings related to 'Developer Mode'.
CVE-2023-30955 has a severity rating of medium with a score of 5.4.
CVE-2023-30955 affects Palantir Foundry Workspace-server up to version 7.7.0.
To fix CVE-2023-30955, you should update to a version of Palantir Foundry Workspace-server that is higher than 7.7.0.
You can find more information on CVE-2023-30955 at the following reference: [https://palantir.safebase.us/?tcuUid=0c3f6c33-4eb0-48b5-ab87-fe48c46a4170]