Missing Authorization in Lablup's BackendAI allows attackers to takeover all active sessions; Accessing, stealing, or altering any data accessible in the session. This vulnerability exists in all current versions of BackendAI.
| Software | From | Fixed in |
|---|---|---|
backend.ai
|
- | 25.3.3.x |