CVE-2023-30961CWE-710
Palantir Gotham UI bug that could lead to incorrect data classification
Medium · published September 26, 2023
What it is
Palantir Gotham was found to be vulnerable to a bug where under certain circumstances, the frontend could have applied an incorrect classification to a newly created property or link.
The record
Technical detail
- CVSS v3.1
- 6.5 · MEDIUM
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00351 · 28.1th percentile
- Weakness
- CWE-710 · Improper Adherence to Coding Standards
- Published
- 2023-09-26T18:01Z
EPSS history
Timeline