Improper authorization control for web services In vantage6
Description
Improper Access Control in vantage6 node
Impact
Malicious algorithms can potentially access other algorithms input and output files.
Patches
Todo
Workarounds
Verify and restrict the algorithm containers that are allowed to run on your node. See here on how to do this.
References
https://docs.vantage6.ai/usage/running-the-node/security
For more information
If you have any questions or comments about this advisory:
Email us at [email protected]
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
pypi | 3.3.4 |
Aliases
1. 2.
References
1. 2.