Descriptions

Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the project.

Severity

  • CVSS Score: -

Affected Versions

  • Central Dogma before from 0.17.0 before 0.51.1

Fix

  • Central Dogma should be updated to latest version.

Reference

  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-38388
  • https://github.com/line/centraldogma/pull/621

Updated: