CVE-2022-44009
06.12.2022, 00:15
Improper access control in Key-Value RBAC in StackStorm version 3.7.0 didn't check the permissions in Jinja filters, allowing attackers to access K/V pairs of other users, potentially leading to the exposure of sensitive Information.Enginsight
Vendor | Product | Version |
---|---|---|
stackstorm | stackstorm | 3.7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration