HumHub is an open-source social network kit written in PHP. Prior to HumHub version 1.10.3 or 1.9.3, it could be possible for registered users to become unauthorized members of private Spaces. Versions 1.10.3 and 1.9.3 contain a patch for this issue.
References
Link Resource
https://github.com/humhub/humhub/pull/5473 Patch Third Party Advisory
https://github.com/humhub/humhub/releases/tag/v1.10.3 Release Notes Third Party Advisory
https://github.com/humhub/humhub/releases/tag/v1.9.3 Release Notes Third Party Advisory
https://github.com/humhub/humhub/security/advisories/GHSA-f5hc-5wfr-7v74 Exploit Third Party Advisory
https://huntr.dev/bounties/943dad83-f0ed-4c74-ba81-7dfce7ca0ef2/ Exploit Issue Tracking Patch Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: GitHub_M

Published: 2021-12-20T21:35:12

Updated: 2021-12-20T21:35:12

Reserved: 2021-11-16T00:00:00


Link: CVE-2021-43847

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-12-20T22:15:08.003

Modified: 2022-08-09T13:27:59.707


Link: CVE-2021-43847

JSON object: View

cve-icon Redhat Information

No data.