Description
Improper Access Control in GitHub repository plantuml/plantuml prior to 1.2023.9.
Remediation
References
https://github.com/plantuml/plantuml/commit/fbe7fa3b25b4c887d83927cffb1009ec6cb8ab1e
https://huntr.dev/bounties/fa741f95-b53c-4ed7-b157-e32c5145164c
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FV7XL3CY3K3K5ER3ASMEQA546MIQQ7QM/
Related Vulnerabilities
CVE-2020-10968 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2021-21181 Vulnerability in maven package org.webjars.npm:electron
CVE-2021-21316 Vulnerability in npm package less-openui5
CVE-2023-1283 Vulnerability in npm package @builder.io/qwik
CVE-2022-38900 Vulnerability in maven package org.webjars.npm:decode-uri-component