CVE-2021-25973: Incorrect Authorization
(updated )
In Publify pre1 to is vulnerable to Improper Access Control. guest
role users can self-register even when the admin does not allow. This happens due to front-end restriction only.
References
Detect and mitigate CVE-2021-25973 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →