Liquidfiles versions before 4.2.12 are affected by a...
Moderate severity
Unreviewed
Published
Jun 20, 2026
to the GitHub Advisory Database
•
Updated Jun 20, 2026
Description
Published by the National Vulnerability Database
Jun 20, 2026
Published to the GitHub Advisory Database
Jun 20, 2026
Last updated
Jun 20, 2026
Liquidfiles versions before 4.2.12 are affected by a broken access control vulnerability resulting in privilege escalation from an Admin in a secondary domain to a Sysadmin by modifying a group in their managed secondary (non-default) group.
References