A flaw was discovered in Puppet DB, this flaw results in an escalation of privileges which allows the user to delete tables via an SQL query.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "6.23.0"
},
{
"introduced": "7.7.0"
},
{
"fixed": "7.8.0"
},
{
"introduced": "0"
},
{
"fixed": "6.17.0"
},
{
"introduced": "7.0.0"
},
{
"fixed": "7.4.1"
}
]
}