CyberRota Analysis
AI-GeneratedApache Allura versions prior to 1.19.1 are vulnerable to an Insecure Direct Object Reference (IDOR) due to inadequate permission checks for various Artifact types. This flaw could allow unauthorized access to sensitive resources, potentially leading to data exposure or manipulation. Organizations using affected versions should prioritize upgrading to 1.19.1 to mitigate this security risk.
Original NVD Description
Insecure Direct Object Reference (IDOR) due to missing permission checks for multiple Artifact types in Apache Allura. This issue affects Apache Allura: before 1.19.1. Users are recommended to upgrade to version 1.19.1, which fixes the issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)