Vulnerability CVE-2023-51650


Published: 2023-12-22

Description:
Hertzbeat is an open source, real-time monitoring system. Prior to version 1.4.1, Spring Boot permission configuration issues caused unauthorized access vulnerabilities to three interfaces. This could result in disclosure of sensitive server information. Version 1.4.1 fixes this issue.

Type:

CWE-862

(Missing Authorization)

 References:
https://github.com/dromara/hertzbeat/security/advisories/GHSA-rrc5-qpxr-5jm2
https://github.com/dromara/hertzbeat/releases/tag/v1.4.1

Copyright 2026, cxsecurity.com

 

Back to Top