CVE-2021-35970
30.06.2021, 15:15
Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via GraphQL because permission checks use an incorrect data type.Enginsight
Vendor | Product | Version |
---|---|---|
voxmedia | coral_talk | 4.0.0 ≤ 𝑥 < 4.12.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References