You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
ThreadPoolController of the tenant Management module module of hippo4j. An unauthorized access vulnerability arises from thread pool deletion
DeletePool method to perform the current operation of user authentication, leads to any user can access the DELETE/hippo4j/v1 / cs/thread pool/DELETE interface deleting items within the thread pool
Influence version
hippo4j 1.4.3 (Nov 06, 2022)
Detailed path:
\ hippo4j - v1.4.3 \ hippo4j - server \ hippo4j - the console cn \ \ SRC \ main \ Java \ hippo4j \ console \ controller \ ThreadPoolController Java
Found in Java deletePool method in ThreadPoolController., locating defects in code
The text was updated successfully, but these errors were encountered:
ThreadPoolController of the tenant Management module module of hippo4j. An unauthorized access vulnerability arises from thread pool deletion
DeletePool method to perform the current operation of user authentication, leads to any user can access the DELETE/hippo4j/v1 / cs/thread pool/DELETE interface deleting items within the thread pool
Influence version
hippo4j 1.4.3 (Nov 06, 2022)
Detailed path:
\ hippo4j - v1.4.3 \ hippo4j - server \ hippo4j - the console cn \ \ SRC \ main \ Java \ hippo4j \ console \ controller \ ThreadPoolController Java
Found in Java deletePool method in ThreadPoolController., locating defects in code
The text was updated successfully, but these errors were encountered: