Total vulnerabilities in the database
In tangro Business Workflow before 1.18.1, knowing an attachment ID, it is possible to download workitem attachments without being authenticated.
CVSS v3:
CVSS v2:
CWEs:
OWASP TOP 10: