Description
Eclair through 0.3 allows attackers to trigger loss of funds because of Incorrect Access Control. NOTE: README.md states "it is beta-quality software and don't put too much money in it."
Remediation
References
https://github.com/ACINQ/eclair/releases
https://github.com/ACINQ/eclair/commits/master
https://lists.linuxfoundation.org/pipermail/lightning-dev/2019-September/002174.html
Related Vulnerabilities
CVE-2022-29599 Vulnerability in maven package org.apache.maven.shared:maven-shared-utils
CVE-2016-7103 Vulnerability in maven package org.webjars:jquery-ui
CVE-2019-16540 Vulnerability in maven package org.jenkins-ci.plugins:support-core
CVE-2018-1000632 Vulnerability in maven package org.jenkins-ci.dom4j:dom4j
CVE-2023-49653 Vulnerability in maven package org.jenkins-ci.plugins:jira