CVE-2023-22708

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Dec 9, 2024
CWE ID 862

Summary

CVE-2023-22708 is a missing authorization vulnerability affecting the Kraken.io Image Optimizer, from version n/a through 2.6.7. An attacker can exploit incorrectly configured access control security levels, gaining unauthorized access to resources and potentially executing malicious actions. This issue poses a significant risk to the security of Kraken.io Image Optimizer users, highlighting the importance of implementing proper access control measures to prevent unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share