Vulnerability CVE-2024-0879


Published: 2024-01-25

Description:

Authentication bypass in vector-admin allows a user to register to a vector-admin server while ??domain restriction? is active, even when not owning an authorized email address.


Type:

CWE-287

(Improper Authentication)

 References:
https://research.jfrog.com/vulnerabilities/vector-admin-filter-bypass/
https://github.com/Mintplex-Labs/vector-admin/pull/128/commits/a581b8177dd6be719a5ef6d3ce4b1e939636bb41

Copyright 2026, cxsecurity.com

 

Back to Top