6.5
CVSSv3

CVE-2022-34621

Published: 19/08/2022 Updated: 23/08/2022
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Mealie 1.0.0beta3 exists to contain an Insecure Direct Object Reference (IDOR) vulnerability which allows malicious users to modify user passwords and other attributes via modification of the user_id parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mealie mealie 0.5.5

mealie mealie 1.0.0