Description
Installations, where crafter-search is not protected, allow unauthenticated remote attackers to create, view, and delete search indexes.
Remediation
References
https://docs.craftercms.org/en/3.1/security/advisory.html#cv-2021120107
Related Vulnerabilities
CVE-2020-10687 Vulnerability in maven package io.undertow:undertow-core
CVE-2014-0109 Vulnerability in maven package org.apache.cxf:cxf-bundle-jaxrs
CVE-2014-0168 Vulnerability in maven package org.jolokia:jolokia-core
CVE-2018-5382 Vulnerability in maven package org.bouncycastle:bcprov-jdk15
CVE-2022-36886 Vulnerability in maven package org.jenkins-ci.plugins:external-monitor-job