CVE-2022-34112 Information

Description

An access control issue in the component /api/plugin/uninstall Dataease v1.11.1 allows attackers to arbitrarily uninstall the plugin a right normally reserved for the administrator.

Reference

https://github.com/dataease/dataease/issues/2429

Share on: