github.com/athenz/athenz is vulnerable to Missing Authorization
75
High Risk
An improper authorization issue in AthenZ ZMS allowed authenticated callers with access to deletion endpoints to remove versioned policy assertions or service public key entries without enforcing configured resource ownership checks, enabling unauthorized cross-owner modification of access-control policies and service identity keys.
You are affected if you are using a version that falls within the vulnerable range.
github.com/athenz/athenz is vulnerable to Missing Authorization in versions 1.0.0 - 1.12.38.
Upgrade the github.com/athenz/athenz library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant