A specific endpoint allows authenticated users to pivot...
Critical severity
Unreviewed
Published
Apr 3, 2026
to the GitHub Advisory Database
•
Updated Apr 3, 2026
Description
Published by the National Vulnerability Database
Apr 3, 2026
Published to the GitHub Advisory Database
Apr 3, 2026
Last updated
Apr 3, 2026
A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API call.
References