alextselegidis/easyappointments Improper Access Control vulnerability
Moderate severity
GitHub Reviewed
Published
Apr 15, 2023
to the GitHub Advisory Database
•
Updated Apr 21, 2023
Description
Published by the National Vulnerability Database
Apr 15, 2023
Published to the GitHub Advisory Database
Apr 15, 2023
Reviewed
Apr 21, 2023
Last updated
Apr 21, 2023
alextselegidis/easyappointments 1.4.3 and prior allows one provider to view and edit others providers' appointment details. A patch is available at commit 75b24735767868344193fb2cc56e17ee4b9ac4be and anticipated to be part of version 1.5.0.
References