Vulnerabilities > Candlepinproject > Candlepin > 3.1.19.1

DATE CVE VULNERABILITY TITLE RISK
2023-10-04 CVE-2023-1832 Incorrect Authorization vulnerability in multiple products
An improper access control flaw was found in Candlepin.
network
low complexity
candlepinproject redhat CWE-863
8.1
2022-08-24 CVE-2021-4142 Authorization Bypass Through User-Controlled Key vulnerability in Candlepinproject Candlepin
The Candlepin component of Red Hat Satellite was affected by an improper authentication flaw.
local
low complexity
candlepinproject CWE-639
5.5