What the vulnerability does

01Description

A vulnerability has been identified in Mendix Email Connector (All versions < V2.0.0). Affected versions of the module improperly handle access control for some module entities. This could allow authenticated remote attackers to read and manipulate sensitive information.

Key dates

02Disclosure timeline

December 13, 2022 CVE published
April 22, 2025 Record updated