BrazeUI is vulnerable to Incorrect Authorization
20
Low Risk
Affected versions are vulnerable to incorrect authorization, allowing an in-app message in a Braze-provided UI to display for an ineligible user under rare conditions. This issue occurs when an in-app message is in the process of being displayed while the user is switched to a different user within the application.
You are affected if you are using a version that falls within the vulnerable range.
BrazeUI is vulnerable to Incorrect Authorization in versions 5.0.0 - 11.4.0.
Upgrade the BrazeUI library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant