PT-2026-84043 · Unknown · Cu/Silicon
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
cu silicon versions prior to 0.1.6
Description
A remote issue exists in the edit Endpoint component within the
views.py file. The create app() function is susceptible to manipulation, which results in missing authentication, allowing an attacker to bypass security checks.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, restrict access to the
create app() function in the views.py file to minimize the risk of exploitation.Improper Authentication
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cu/Silicon