A flaw in the cohort search web service allowed users...
Moderate severity
Unreviewed
Published
Oct 23, 2025
to the GitHub Advisory Database
•
Updated Oct 23, 2025
Description
Published by the National Vulnerability Database
Oct 23, 2025
Published to the GitHub Advisory Database
Oct 23, 2025
Last updated
Oct 23, 2025
A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.
References