CVE-2023-46326 Information
Dec 01, 2023
cve
Description
ZStack Cloud version 3.10.38 and before allows unauthenticated API access to the list of active job UUIDs and the session ID for each of these. This leads to privilege escalation.
Reference
https://github.com/zstackio/zstack/security/advisories/GHSA-w2rv-x3pp-h67q
Share on: