CVE-2020-13922
11.01.2021, 10:15
Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API interface.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apache | dolphinscheduler | 1.2.0 |
| apache | dolphinscheduler | 1.2.1 |
| apache | dolphinscheduler | 1.3.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration