HumHub is an Open Source Enterprise Social Network. In affected versions users who are forced to change their password by an administrator may retrieve other users' data. This issue has been resolved by commit `eb83de20`. It is recommended that the HumHub is upgraded to 1.11.0, 1.10.4 or 1.9.4. There are no known workarounds for this issue.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2022-04-20T20:05:10
Updated: 2024-08-03T04:29:00.221Z
Reserved: 2022-02-10T00:00:00
Link: CVE-2022-24865
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-20T20:15:08.583
Modified: 2024-11-21T06:51:16.700
Link: CVE-2022-24865
Redhat
No data.