Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions prior to 2.25.6, due to insufficient access-level checks, any logged-in user allowed to perform Group Actions can access to the Summary field of private Issues (i.e. having Private view status, or belonging to a private Project) via a crafted bug_arr[] parameter in bugactiongroupext.php. This issue is fixed in version 2.25.6. There are no workarounds.
{
"cna_assigner": "GitHub_M",
"cwe_ids": [
"CWE-200"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/22xxx/CVE-2023-22476.json"
}{
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "2.25.6"
}
],
"cpe": "cpe:2.3:a:mantisbt:mantisbt:*:*:*:*:*:*:*:*",
"source": "CPE_FIELD"
}