CVE-2023-30961CWE-710

Palantir Gotham UI bug that could lead to incorrect data classification

Medium · published September 26, 2023

CVSS v3.1
6.5
EPSS
0%
Percentile
28.1
In the wild
Unconfirmed
What it is

Palantir Gotham was found to be vulnerable to a bug where under certain circumstances, the frontend could have applied an incorrect classification to a newly created property or link.

The record
Technical detail
CVSS v3.1
6.5 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS v4.0
Not supplied
EPSS
0.00351 · 28.1th percentile
Weakness
CWE-710 · Improper Adherence to Coding Standards
Published
2023-09-26T18:01Z
EPSS history
Timeline
  • 26 SEP 18:01Z
    Palantir Gotham UI bug that could lead to incorrect data classification
    cvelistv5