VYPR
Unrated severityNVD Advisory· Published Jun 25, 2024· Updated Sep 17, 2024

Improper Handling of Insufficient Permissions or Privileges in Conduit

CVE-2024-6302

Description

Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower, allowing a local user to redact any message from users on the same server, given that they are able to send redaction events.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.