CVE-2023-30969: Palantir Tiles missing authentication on API endpoints
The Palantir Tiles1 service was found to be vulnerable to an API wide issue where the service was not performing authentication/authorization on all the endpoints.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-30969?
CVE-2023-30969 is a vulnerability in Palantir Tiles where the service does not perform authentication/authorization on all API endpoints.
What is the severity of CVE-2023-30969?
CVE-2023-30969 has a severity rating of 8.2 out of 10, indicating a high severity.
How does CVE-2023-30969 affect Palantir Tiles?
CVE-2023-30969 affects Palantir Tiles by leaving the service vulnerable to unauthorized access on various API endpoints.
How can I fix CVE-2023-30969?
To fix CVE-2023-30969, it is recommended to update Palantir Tiles to a version higher than 4.326.0, which resolves the authentication/authorization issue.
Where can I find more information about CVE-2023-30969?
You can find more information about CVE-2023-30969 at https://palantir.safebase.us/?tcuUid=afcbc9b2-de62-44b9-b28b-2ebf0684fbf7.