Permissions were not properly verified in the API on projects using version control in Git. This allowed projects to be modified by users with only ProjectView permissions.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Octopus

Published: 2022-05-04T06:15:11

Updated: 2024-08-03T00:03:06.436Z

Reserved: 2022-04-27T00:00:00

Link: CVE-2022-1502

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-05-04T07:15:07.210

Modified: 2024-11-21T06:40:51.127

Link: CVE-2022-1502

cve-icon Redhat

No data.