Vulnerability Description
Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via GraphQL because permission checks use an incorrect data type.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Voxmedia | Coral Talk | >= 4.0.0, < 4.12.1 |
Related Weaknesses (CWE)
References
- https://docs.coralproject.net/coral/api/graphql/#UserExploitVendor Advisory
- https://github.com/coralproject/talk/compare/v4.12.0...v4.12.1PatchThird Party Advisory
- https://github.com/coralproject/talk/issues/3600ExploitThird Party Advisory
- https://github.com/coralproject/talk/pull/3599PatchThird Party Advisory
- https://docs.coralproject.net/coral/api/graphql/#UserExploitVendor Advisory
- https://github.com/coralproject/talk/compare/v4.12.0...v4.12.1PatchThird Party Advisory
- https://github.com/coralproject/talk/issues/3600ExploitThird Party Advisory
- https://github.com/coralproject/talk/pull/3599PatchThird Party Advisory
FAQ
What is CVE-2021-35970?
CVE-2021-35970 is a vulnerability with a CVSS score of 7.5 (HIGH). Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via GraphQL because permission checks use an incorrect data type.
How severe is CVE-2021-35970?
CVE-2021-35970 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-35970?
Check the references section above for vendor advisories and patch information. Affected products include: Voxmedia Coral Talk.