Access Control Vulnerability in Statamic Framework by Statamic
CVE-2017-11422
8.8HIGH
What is CVE-2017-11422?
The Statamic framework versions prior to 2.6.0 are prone to an access control vulnerability that fails to correctly validate user permissions when executing specific methods from a user's class. This oversight affects crucial functions such as resetting passwords, creating new accounts, and establishing new roles, potentially allowing unauthorized users to exploit these capabilities.
