CVE-2023-30952

Name
CVE-2023-30952
Description
A security defect was discovered in Foundry Issues that enabled users to create convincing phishing links by editing the request sent when creating an Issue. This defect was resolved in Frontend release 6.228.0 .
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://palantir.safebase.us/?tcuUid=42bdb7fa-9a6d-4462-b89d-cabc62f281f4

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:palantir:foundry:*:*:*:*:*:*:*:* foundry >= None < 6.228.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
foundry edge-community 1.0.1-r0 Achill Gilgenast <achill@achill.org> possibly vulnerable
foundry edge-community 1.0.0-r0 Achill Gilgenast <achill@achill.org> possibly vulnerable