In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade rucio-webui to version 1.26.7 or higher.
Affected versions of this package are vulnerable to Information Exposure such that authentication tokens are leaked to other users accessing the 'webui' within a close timeframe, thus allowing users to access the webui with the leaked authentication token. Privileges are therefore also escalated.
Note: Rucio server / daemons are not affected by this issue.