CVE-2022-017011.01.2022, 16:15peertube is vulnerable to Improper Access ControlEnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTNIST4.3 MEDIUMNETWORKLOWLOWCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N@huntrdevCNA5.3 MEDIUMNETWORKLOWNONECVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NCVEADP------Base ScoreCVSS 3.xEPSS ScorePercentile: 37%VendorProductVersionframasoftpeertube𝑥≤ 4.0.0𝑥= Vulnerable software versionsCommon Weakness EnumerationCWE-284 - Improper Access ControlThe software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.Referenceshttps://github.com/chocobozzz/peertube/commit/84c8d9866890f479faf0168c29be5eb7816ccc8ehttps://huntr.dev/bounties/f2a003fc-b911-43b6-81ec-f856cdfeaefchttps://github.com/chocobozzz/peertube/commit/84c8d9866890f479faf0168c29be5eb7816ccc8ehttps://huntr.dev/bounties/f2a003fc-b911-43b6-81ec-f856cdfeaefc