Description
Leaking password protected articles content due to improper access control in GitHub repository publify/publify prior to 9.2.8. Attackers can leverage this vulnerability to view the contents of any password-protected article present on the publify website, compromising confidentiality and integrity of users.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2611 | Leaking password protected articles content due to improper access control in GitHub repository publify/publify prior to 9.2.8. Attackers can leverage this vulnerability to view the contents of any password-protected article present on the publify website, compromising confidentiality and integrity of users. |
Github GHSA |
GHSA-5jm7-g527-m694 | Publify exposes article metadata |
References
History
No history.
Status: PUBLISHED
Assigner: @huntrdev
Published:
Updated: 2024-08-03T00:10:03.456Z
Reserved: 2022-05-03T00:00:00.000Z
Link: CVE-2022-1553
No data.
Status : Modified
Published: 2022-05-16T15:15:09.977
Modified: 2024-11-21T06:40:57.360
Link: CVE-2022-1553
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA