Vulnerabilities > SAP > Contributor License Agreement Assistant > High

DATE CVE VULNERABILITY TITLE RISK
2023-08-15 CVE-2023-39438 Missing Authorization vulnerability in SAP Contributor License Agreement Assistant
A missing authorization check allows an arbitrary authenticated user to perform certain operations through the API of CLA-assistant by executing specific additional steps.
network
low complexity
sap CWE-862
8.1