Vulnerabilities > Dtstack

DATE CVE VULNERABILITY TITLE RISK
2023-06-23 CVE-2023-29860 Incorrect Permission Assignment for Critical Resource vulnerability in Dtstack Taier 1.3.0
An insecure permissions in /Taier/API/tenant/listTenant interface in DTStack Taier 1.3.0 allows attackers to view sensitive information via the getCookie method.
network
low complexity
dtstack CWE-732
7.5