An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the token component.
{ "nvd_published_at": "2025-02-12T22:15:41Z", "cwe_ids": [ "CWE-269", "CWE-276" ], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2025-02-20T00:12:37Z" }