EPSS
Percentile
72.5%
dspace-api is vulnerable to privilege escalation. The vulnerability exists because it does not properly handle permissions, which allows any user to escalate their permissions to become a system administrator.
github.com/DSpace/DSpace/commit/277b499a5cd3a4f5eb2370513a1b7e4ec2a6e041
github.com/DSpace/DSpace/commit/c3bea16ab911606e15ae96c97a1575e1ffb14f8a
github.com/DSpace/DSpace/issues/7928
github.com/DSpace/DSpace/security/advisories/GHSA-cf2j-vf36-c6w8