Account Enumeration Vulnerability in eZ Publish by Ibexa
CVE-2021-46876
5.3MEDIUM
What is CVE-2021-46876?
An issue in eZ Publish Ibexa Kernel allows attackers to exploit the /user/sessions endpoint, enabling them to ascertain the existence of user accounts. This vulnerability could lead to further attacks, making it essential for users of affected versions to apply necessary security updates.