GHSA-w6j2-5q9c-xv6xHigh

In affected versions, Octopus Server incorrectly evaluates multiple scoped permission assignments...

Published
October 8, 2026
Last Modified
October 8, 2026

🔗 CVE IDs covered (1)

📋 Description

In affected versions, Octopus Server incorrectly evaluates multiple scoped permission assignments, allowing a highly privileged user to obtain deployment permissions beyond those actually granted to them.

🔗 References (3)