Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Audited Log Integrity Errors Due to Race Condition
Vulnerability Description
A race condition exists in Audited 4.0.0 to 5.3.3 that can result in an authenticated user to cause audit log entries to be attributed to another user.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
使用共享资源的并发执行不恰当同步问题(竞争条件)
Vulnerability Title
Audited 安全漏洞
Vulnerability Description
Audited是Collective Idea开源的一个 ORM 扩展。用于记录对模型的所有更改。 Audited 4.0.0至5.3.3之前版本存在安全漏洞,该漏洞源于存在条件竞争漏洞。
CVSS Information
N/A
Vulnerability Type
N/A