Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32791
HistoryNov 03, 2021 - 3:02 a.m.

Privilege Escalation

2021-11-0303:02:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
publify_core
privilege escalation
vulnerability
front-end restrictions
guest role
self-register
admin disallow

EPSS

0.001

Percentile

31.3%

publify_core is vulnerable to privilege escalation. The vulnerability exists due to the front-end restrictions. A malicious user with a guest role can self-register, even if the admin does not allow it.

EPSS

0.001

Percentile

31.3%