### [CVE-2022-0406](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0406) ![](https://img.shields.io/static/v1?label=Product&message=janeczku%2Fcalibre-web&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3C%200.6.16%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-285%20Improper%20Authorization&color=brighgreen) ### Description Improper Authorization in GitHub repository janeczku/calibre-web prior to 0.6.16. ### POC #### Reference - https://huntr.dev/bounties/d7498799-4797-4751-b5e2-b669e729d5db #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/nhiephon/Research