CVE-2023-22708
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Dec 9, 2024
CWE ID 862
Summary
CVE-2023-22708 is a missing authorization vulnerability affecting the Kraken.io Image Optimizer, from version n/a through 2.6.7. An attacker can exploit incorrectly configured access control security levels, gaining unauthorized access to resources and potentially executing malicious actions. This issue poses a significant risk to the security of Kraken.io Image Optimizer users, highlighting the importance of implementing proper access control measures to prevent unauthorized access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share