mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
990 B
990 B
CVE-2024-32467
Description
MeterSphere is an open source continuous testing platform. Prior to version 2.10.14-lts, members without space permissions can view member information from other workspaces beyond their authority. Version 2.10.14-lts fixes this issue.
POC
Reference
- https://github.com/metersphere/metersphere/security/advisories/GHSA-7499-q88f-mxqp
- https://github.com/metersphere/metersphere/security/advisories/GHSA-7499-q88f-mxqp