Security Advisory
CVE-2022-1670
7.5
HIGH
Vulnerability Description
When generating a user invitation code in Octopus Server, the validity of this code can be set for a specific number of users. It was possible to bypass this restriction of validity to create extra user accounts above the initial number of invited users.
Published Date
May 19, 2022
Official Source
NIST NVD Advisory