Severity: important

Affected versions:

- Apache Linkis Basic management services 1.3.2 before 1.6.0

Description:

In Apache Linkis <= 1.5.0,

Privilege Escalation in Basic management services where the attacking user is 

a trusted account

 allows access to Linkis's Token information. Users are advised to upgrade to 
version 1.6.0, which fixes this issue.

Credit:

superx (reporter)

References:

https://linkis.apache.org
https://www.cve.org/CVERecord?id=CVE-2024-27181

Reply via email to