GHSA-pj36-fcrg-327j
GitHub Security Advisory
BookStack Incorrect Access Control vulnerability
✓ GitHub Reviewed
HIGH
Has CVE
Advisory Details
Incorrect access control in BookStack before v24.05.1 allows attackers to confirm existing system users and perform targeted notification email DoS via public facing forms.
Affected Packages
Packagist
ssddanbrown/bookstack
Affected versions:
0
(fixed in 24.05.1)
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: July 12, 2025 6:29 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.