GHSA-c5hg-mr8r-f6jp
CRITICALCVE-2022-36437The Connection handler in Hazelcast and Hazelcast Jet allows an unauthenticated, remote attacker to access and manipulate data in the cluster with another authenticated connection's identity.
- Affected
- <= 4.5.3
- Fixed in
- 4.5.4
- Weakness
- CWE-384
- Published
- 2022-12-27
- Source
- github