An Insecure Direct Object Reference (IDOR) vulnerability in KubeSphere v3.4.1 and v4.1.1 allows low-privileged authenticated attackers to access sensitive resources without proper authorization checks.
{
"nvd_published_at": "2024-10-14T18:15:03Z",
"severity": "MODERATE",
"cwe_ids": [
"CWE-639"
],
"github_reviewed_at": "2024-11-01T20:35:14Z",
"github_reviewed": true
}