GHSA-cv6m-pghp-xm7fMediumCVSS 4.3
A low-privileged remote attacker can enumerate all configured users and identify which accounts...
🔗 CVE IDs covered (1)
📋 Description
A low-privileged remote attacker can enumerate all configured users and identify which accounts hold elevated privileges using the endpoint /api/user/fetch-all.php.