Source: tryton-server Version: 7.0.38-1 Severity: important Tags: security upstream Forwarded: https://foss.heptapod.net/tryton/tryton/-/issues/14364 X-Debbugs-Cc: [email protected], Debian Security Team <[email protected]>
Tracking the following issue, https://discuss.tryton.org/t/security-release-for-issue-14364/8952 | Mahdi Afshar has found that trytond does not enforce access rights | for the route of the HTML editor (since version 6.0). Regards, Salvatore

