CVE Published: 18/12/2023 |
CVE Updated: 23/11/2024 |
CVE Year: 2023 Source: redhat |
Vendor: Red Hat |
Product: Red Hat Data Grid 8.4.4 Status : PUBLISHED
CVE-2023-3628 Description
A flaw was found in Infinispan\'s REST. Bulk read endpoints do not properly evaluate user permissions for the operation. This issue could allow an authenticated user to access information outside of their intended permissions.