Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.
2025-02-25T18:15:27.020
2025-02-28T15:40:59.097
Analyzed
CVSSv3.1: 8.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | odoo | odoo | 15.0 | Yes |
Application | odoo | odoo | 15.0 | Yes |