Medium severity6.5NVD Advisory· Published Jan 14, 2023· Updated Jun 17, 2026
CVE-2023-0298
CVE-2023-0298
Description
Incorrect Authorization in GitHub repository firefly-iii/firefly-iii prior to 5.8.0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
grumpydictator/firefly-iiiPackagist | < 5.8.0 | 5.8.0 |
Affected products
3- Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/firefly-iii/firefly-iii/commit/db0500dcf0d4f1990fc7a377ef0d56c3884fcaa4nvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/9689052c-c1d7-4aae-aa08-346c9b6e04ednvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-7mc4-jp4f-v2j2ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-0298ghsaADVISORY
News mentions
0No linked articles in our index yet.