Description
xxl-job-admin 2.4.0 is vulnerable to Insecure Permissions via /xxl-job-admin/joblog/clearLog and /xxl-job-admin/joblog/logDetailCat.
Remediation
References
https://github.com/xuxueli/xxl-job/issues/3330
Related Vulnerabilities
CVE-2022-25912 Vulnerability in maven package org.webjars.npm:simple-git
CVE-2019-9155 Vulnerability in npm package openpgp
CVE-2018-1002203 Vulnerability in npm package unzipper
CVE-2023-27562 Vulnerability in npm package n8n
CVE-2022-31160 Vulnerability in maven package org.webjars.bowergithub.jquery:jquery-ui