What the vulnerability does
01Description
Missing Authorization vulnerability in Joris van Montfort JVM rich text icons.This issue affects JVM rich text icons: from n/a through 1.2.6.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
What the vulnerability does
Missing Authorization vulnerability in Joris van Montfort JVM rich text icons.This issue affects JVM rich text icons: from n/a through 1.2.6.
Explanation of Vulnerability in Simple Terms
JVM rich text icons versions up to 1.2.6 lack proper authorization checks, allowing authenticated users to trigger a denial-of-service condition affecting the entire application. An attacker with low-level account access can make the site unresponsive without needing user interaction. The vulnerability impacts availability across the system due to its changed scope.
What an attacker can do
Make the site unresponsive or unavailable by triggering a denial-of-service condition.
Potential impact on your site
Authenticated users can crash or disable your site without admin privileges; service disruption affects all visitors.
Conditions required to exploit
Attacker must have a low-privilege user account on the site; no user interaction required.
Key dates
External resources
Related vulnerabilities