DataEase is an open source data visualization analysis tool to analyze data and gain insight into business trends. In affected versions Unauthorized users can delete an application erroneously. This vulnerability has been fixed in version 1.18.8. Users are advised to upgrade. There are no known workarounds for this vulnerability.
References
Link | Resource |
---|---|
https://github.com/dataease/dataease/security/advisories/GHSA-4c4p-qfwq-85fj | Exploit Vendor Advisory |
https://github.com/dataease/dataease/security/advisories/GHSA-4c4p-qfwq-85fj | Exploit Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-06-26 21:15
Updated : 2024-11-21 08:07
NVD link : CVE-2023-34463
Mitre link : CVE-2023-34463
CVE.ORG link : CVE-2023-34463
JSON object : View
Products Affected
dataease
- dataease
CWE
CWE-862
Missing Authorization