Loading HuntDB...

GHSA-vcgf-vmpc-ph79

GitHub Security Advisory

Microweber Incorrect Permission Assignment for Critical Resource vulnerability

✓ GitHub Reviewed MODERATE Has CVE

Advisory Details

In Microweber prior to 1.2.11, a non-admin user is able to access other users' sensitive information.

Affected Packages

Packagist microweber/microweber
Affected versions: 0 (fixed in 1.2.11)

Related CVEs

Key Information

GHSA ID
GHSA-vcgf-vmpc-ph79
Published
January 21, 2022 6:06 PM
Last Modified
June 30, 2023 8:05 PM
CVSS Score
5.0 /10
Primary Ecosystem
Packagist
Primary Package
microweber/microweber
GitHub Reviewed
✓ Yes

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.