What the vulnerability does
01Description
Authorization Bypass Through User-Controlled Key vulnerability in Tareq Hasan Meetup meetup allows Privilege Escalation.This issue affects Meetup: from n/a through <= 0.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
What the vulnerability does
Authorization Bypass Through User-Controlled Key vulnerability in Tareq Hasan Meetup meetup allows Privilege Escalation.This issue affects Meetup: from n/a through <= 0.1.
Explanation of Vulnerability in Simple Terms
A critical vulnerability in Meetup versions 0.1 and earlier allows unauthenticated attackers to read sensitive data, modify site content, or disrupt service availability. The vulnerability requires no user interaction and can be exploited remotely over the network. All installations of affected versions should be updated immediately.
What an attacker can do
Read sensitive data, modify content, or disable the site without authentication.
Potential impact on your site
Complete compromise of confidentiality, integrity, and availability of the Meetup component.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities