Skip to end of banner
Go to start of banner

Comala Document Control Security Advisory 2022-08-04

Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

Version 1 Current »

This advisory discloses a security vulnerability found and fixed in Comala Document Control.  We recommend upgrading Comala Document Control to the latest supported version.

Affected Versions

The vulnerability affects all the Comala Document Control versions up to 1.12.12

The 1.12.13 release contains a fix for the issues mentioned below.

Vulnerabilities

Severity

Comalatech rates the severity of these issues as High  according to the published Atlassian Security Levels. We have ranked the vulnerability as high because: 

  • Registered and anonymous users can perform unauthorized actions that will result in significant data loss.

This is an independent assessment and you should evaluate its applicability to your own IT environment.

Description

We have fixed vulnerabilities that allowed users to do unauthorized actions.

Risk Mitigation

We recommend all users to upgrade to Comala Document Control to v1.12.13

  • No labels