CVE-2023-39438
Published Aug 15, 2023A missing authorization check allows an arbitrary authenticated user to perform certain operations through the API of CLA-assistant by executing specific additional steps. This al…
Vendor/product archive
2 CVEs tagged to sap / contributor_license_agreement_assistant — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
A missing authorization check allows an arbitrary authenticated user to perform certain operations through the API of CLA-assistant by executing specific additional steps. This al…
Due to improper error handling an authenticated user can crash CLA assistant instance. This could impact the availability of the application.