Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository transloadit/uppy prior to 3.3.1.
References
Link | Resource |
---|---|
https://huntr.dev/bounties/8b060cc3-2420-468e-8293-b9216620175b | Exploit Patch Third Party Advisory |
https://github.com/transloadit/uppy/commit/267c34045a1e62c98406d8c31261c604a11e544a | Patch Third Party Advisory |
Configurations
Information
Published : 2022-03-02 23:15
Updated : 2022-03-09 11:52
NVD link : CVE-2022-0528
Mitre link : CVE-2022-0528
JSON object : View
CWE
CWE-863
Incorrect Authorization
Products Affected
transloadit
- uppy