CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Sap 1Contributor License Agreement Assistant Nov 21, 2024 Aug 15, 2023 N/A· v4 8.1 HIGH· v3 N/A· v2 A missing authorization check allows an arbitrary authenticated user to perform certain operations through the API of CLA-assistant by executing specific additional steps. This allows an arbitrary authenticated user to r...Show more |
1Sap 1Contributor License Agreement Assistant Nov 21, 2024 Jun 6, 2022 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 Due to improper error handling an authenticated user can crash CLA assistant instance. This could impact the availability of the application. |