Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-9rhq-86fm-qxqc: Hard-coded credentials in org.folio:mod-data-export-spring

Hard-coded credentials in FOLIO mod-data-export-spring versions before 1.5.4 and from 2.0.0 to 2.0.2 allows unauthenticated users to access critical APIs, modify user data, modify configurations including single-sign-on, and manipulate fees/fines.

ghsa
#git#hard_coded_credentials#auth

Hard-coded credentials in org.folio:mod-data-export-spring

High severity GitHub Reviewed Published Jan 20, 2024 to the GitHub Advisory Database • Updated Jan 22, 2024

ghsa: Latest News

GHSA-3qhf-m339-9g5v: MCP Python SDK vulnerability in the FastMCP Server causes validation error, leading to DoS