CVE-2022-1502
04.05.2022, 07:15
Permissions were not properly verified in the API on projects using version control in Git. This allowed projects to be modified by users with only ProjectView permissions.Enginsight
Vendor | Product | Version |
---|---|---|
octopus | server | 2021.3 ≤ 𝑥 < 2021.3.12725 |
octopus | server | 2022.1 ≤ 𝑥 < 2022.1.2454 |
𝑥
= Vulnerable software versions