CVE Published: 04/05/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: Octopus |
Vendor: Octopus Deploy |
Product: Octopus Server Status : PUBLISHED
CVE-2022-1502 Description
Permissions were not properly verified in the API on projects using version control in Git. This allowed projects to be modified by users with only ProjectView permissions.