In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Incorrect Authorization vulnerabilities in an interactive lesson.
Start learningUpgrade @saltcorn/data to version 1.4.4, 1.5.2, 1.6.0-beta.1 or higher.
@saltcorn/data is a Data models for Saltcorn, open-source no-code platform
Affected versions of this package are vulnerable to Incorrect Authorization through the role context evaluation process. An attacker can gain unauthorized administrative privileges on the root domain by manipulating the tenant context and accessing privileged routes.