With specially crafted requests, incorrect authorization decisions may be made by Pomerium.
We are releasing patch fixes to address this vulnerability going back to v0.17.X
. Please upgrade to:
If you have any questions or comments about this advisory:
{ "nvd_published_at": "2023-05-30T06:16:37Z", "cwe_ids": [ "CWE-285" ], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2023-05-26T22:00:39Z" }