Medium severity4.3NVD Advisory· Published Nov 28, 2018· Updated Jun 17, 2026
CVE-2018-19620
CVE-2018-19620
Description
ShowDoc 2.4.1 allows remote attackers to edit other users' notes by navigating with a modified page_id.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
showdoc/showdocPackagist | < 2.4.2 | 2.4.2 |
Affected products
2Patches
Vulnerability mechanics
References
6- github.com/star7th/showdoc/commit/bcdb5e3519285bdf81e618b3c9b90d22bc49e13cnvdPatchWEB
- github.com/CCCCCrash/POCs/tree/master/Web/showdoc/IncorrectAccessControlnvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-pfrc-5hhq-6hvrghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-19620ghsaADVISORY
- github.com/star7th/showdoc/commits/v2.4.2ghsaWEB
- github.com/star7th/showdoc/issues/397nvdIssue TrackingWEB
News mentions
0No linked articles in our index yet.