In Flagsmith before 2.134.1, it is possible to bypass the ALLOW_REGISTRATION_WITHOUT_INVITE setting.
References
| Link | Resource |
|---|---|
| https://github.com/Flagsmith/flagsmith/compare/v2.134.0...v2.134.1 | Patch |
| https://github.com/Flagsmith/flagsmith/pull/4454 | Issue Tracking Patch |
Configurations
History
No history.
Information
Published : 2024-11-17 04:15
Updated : 2025-07-07 18:01
NVD link : CVE-2024-52871
Mitre link : CVE-2024-52871
CVE.ORG link : CVE-2024-52871
JSON object : View
Products Affected
flagsmith
- flagsmith
CWE
