CVE-2023-30961: Palantir Gotham UI bug that could lead to incorrect data classification
Palantir Gotham was found to be vulnerable to a bug where under certain circumstances, the frontend could have applied an incorrect classification to a newly created property or link.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-30961?
CVE-2023-30961 is a vulnerability found in Palantir Gotham where the frontend could incorrectly apply a classification to a newly created property or link.
What is the severity of CVE-2023-30961?
The severity of CVE-2023-30961 is medium with a severity value of 6.5.
Which software versions are affected by CVE-2023-30961?
The Palantir Gotham-fe-bundle versions between 100.30230702.0 and 100.30230704.15, and versions between 100.30230706.0 and 100.30230706.22 are affected. Additionally, the Palantir Titanium-browser-app-bundle versions up to 100.30230706.20 are also affected.
How can I fix CVE-2023-30961?
To fix CVE-2023-30961, it is recommended to update Palantir Gotham to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2023-30961?
You can find more information about CVE-2023-30961 at the following link: [https://palantir.safebase.us/?tcuUid=2755c49f-2c30-459e-8bdf-f95ef3692da4](https://palantir.safebase.us/?tcuUid=2755c49f-2c30-459e-8bdf-f95ef3692da4)