Lucene search

K
osvGoogleOSV:GHSA-5JM7-G527-M694
HistoryMay 17, 2022 - 12:01 a.m.

Publify exposes article metadata

2022-05-1700:01:41
Google
osv.dev
9
publify
article metadata
access control
github
vulnerability
confidentiality
integrity
users

EPSS

0.001

Percentile

26.1%

Leaking password protected articles content due to improper access control in GitHub repository publify/publify prior to 9.2.8. Attackers can leverage this vulnerability to view the contents of any password-protected article present on the publify website, compromising confidentiality and integrity of users.

EPSS

0.001

Percentile

26.1%