High
CVSS 8.8
Overview
obs-server before 1.7.7 allows logins by 'unconfirmed' accounts due to a bug in the REST api implementation.
obs-server before 1.7.7 allows logins by 'unconfirmed' accounts due to a bug in ...
obs-server before 1.7.7 allows logins by 'unconfirmed' accounts due to a bug in the REST api implementation.
This vulnerability is rated 🟠 HIGH.
Recommended actions: