Lucene search

K
osvGoogleOSV:CVE-2020-26031
HistoryDec 28, 2020 - 8:15 a.m.

CVE-2020-26031

2020-12-2808:15:11
Google
osv.dev
7
zammad
global-search
leaking
knowledge base
drafts
authenticated
insufficient permissions

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

22.7%

An issue was discovered in Zammad before 3.4.1. The global-search feature leaks Knowledge Base drafts to Knowledge Base readers (who are authenticated but have insufficient permissions).

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

22.7%

Related for OSV:CVE-2020-26031