We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-39519

CloudExplorer Lite sensitive information leakage vulnerability



AssignerGitHub_M
Reserved2023-08-03
Published2023-08-24
Updated2024-10-02

Description

Cloud Explorer Lite is an open source cloud management platform. Prior to version 1.4.0, there is a risk of sensitive information leakage in the user information acquisition of CloudExplorer Lite. The vulnerability has been fixed in version 1.4.0.



HIGH: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Problem types

CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Product status

< 1.4.0
affected

References

https://github.com/CloudExplorer-Dev/CloudExplorer-Lite/security/advisories/GHSA-hh2g-77xq-x4vq

https://github.com/CloudExplorer-Dev/CloudExplorer-Lite/releases/tag/v1.4.0

cve.org CVE-2023-39519

nvd.nist.gov CVE-2023-39519

Download JSON

Share this page
https://cve.threatint.com
Subscribe to our newsletter to learn more about our work.