Permissions Vulnerability in XXL-Job by Xuxueli
CVE-2023-27087
7.5HIGH
What is CVE-2023-27087?
A permissions vulnerability in XXL-Job versions 2.2.0, 2.3.0, and 2.3.1 has been identified, which enables an attacker to access sensitive information through the use of the pageList parameter. This exposure could allow unauthorized users to gain insights into the application's operational data, highlighting the importance of securing endpoint access and implementing strict permission controls. Organizations using these versions of XXL-Job should address this vulnerability to safeguard their data.