CVE-2024-47876: SAK-50571 Sakai Kernel users created with type roleview can login as a normal user
Illegal access can be granted to the system.
References
- central.sonatype.com/artifact/org.sakaiproject.kernel/sakai-kernel-impl
- github.com/advisories/GHSA-cx95-q6gx-w4qp
- github.com/sakaiproject/sakai
- github.com/sakaiproject/sakai/commit/a9aadd9347cfb204515e89ac0163e1be9e56cc41
- github.com/sakaiproject/sakai/security/advisories/GHSA-cx95-q6gx-w4qp
- nvd.nist.gov/vuln/detail/CVE-2024-47876
Detect and mitigate CVE-2024-47876 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →