Medium severity5.9NVD Advisory· Published Oct 5, 2020· Updated Jun 17, 2026
CVE-2020-15235
CVE-2020-15235
Description
In RACTF before commit f3dc89b, unauthenticated users are able to get the value of sensitive config keys that would normally be hidden to everyone except admins. All versions after commit f3dc89b9f6ab1544a289b3efc06699b13d63e0bd(3/10/20) are patched.
Affected products
3- ractf/corev5Range: < f3dc89b
Patches
Vulnerability mechanics
References
2- github.com/ractf/core/commit/f3dc89b9f6ab1544a289b3efc06699b13d63e0bdnvdPatchVendor Advisory
- github.com/ractf/core/security/advisories/GHSA-ph67-c355-52vmnvdVendor Advisory
News mentions
0No linked articles in our index yet.