Vulnerabilities (CVE)

Filtered by vendor Elastic Subscribe
Filtered by product Elastic Sharepoint Online Python Connector
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-46666 1 Elastic 1 Elastic Sharepoint Online Python Connector 2024-02-28 N/A 6.5 MEDIUM
An issue was discovered when using Document Level Security and the SPO "Limited Access" functionality in Elastic Sharepoint Online Python Connector. If a user is assigned limited access permissions to an item on a Sharepoint site then that user would have read permissions to all content on the Sharepoint site through Elasticsearch.