Improper authorization control for web services In contao/contao
Description
Contao Information Disclosure via Access Control Flaws Contao 3.x before 3.5.37, 4.4.x before 4.4.31 and 4.6.x before 4.6.11 has Incorrect Access Control.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
packagist | 3.5.37, 4.6.11, 4.4.31 | ||
packagist | 4.0.0, 4.4.31, 4.6.11 |
Aliases
1. 2. 3. 4. 5.
References
1. 2. 3.