VYPR
Unrated severityNVD Advisory· Published Jun 30, 2021· Updated Aug 4, 2024

CVE-2021-35970

CVE-2021-35970

Description

Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via GraphQL because permission checks use an incorrect data type.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Coral/Talk 4description
  • Drupal/Talkllm-fuzzy
    Range: <4.12.1

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.