SAP

Contributor License Agreement Assistant

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Published 15.08.2023 17:15:12
  • Last modified 21.11.2024 08:15:25

A missing authorization check allows an arbitrary authenticated user to perform certain operations through the API of CLA-assistant by executing specific additional steps. This allows an arbitrary authenticated user to read CLA information including ...

  • EPSS 0.3%
  • Published 06.06.2022 20:15:07
  • Last modified 21.11.2024 06:59:26

Due to improper error handling an authenticated user can crash CLA assistant instance. This could impact the availability of the application.