Filtered by vendor Kubesphere Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-46528 1 Kubesphere 1 Kubesphere 2024-11-21 4.3 Medium
An Insecure Direct Object Reference (IDOR) vulnerability in KubeSphere 4.x before 4.1.3 and 3.x through 3.4.1 and KubeSphere Enterprise 4.x before 4.1.3 and 3.x through 3.5.0 allows low-privileged authenticated attackers to access sensitive resources without proper authorization checks.