Description
Insecure Permissions vulnerability found in OpenGoofy Hippo4j v.1.4.3 allows attacker to obtain sensitive information via the ConfigVerifyController function of the Tenant Management module.
Remediation
References
https://github.com/opengoofy/hippo4j/issues/1060
Related Vulnerabilities
CVE-2023-37466 Vulnerability in maven package org.webjars.npm:vm2
CVE-2023-50728 Vulnerability in npm package probot
CVE-2022-41915 Vulnerability in maven package io.netty:netty-codec
CVE-2021-39154 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2022-45146 Vulnerability in maven package org.bouncycastle:bc-fips