iroha Board Forced Browsing Vulnerability Allowing Unauthorized Access to Non-Public Content

Vulnerability

A forced browsing vulnerability has been identified in iroha Board versions through v0.10.12. This issue allows an attacker who is logged in to the application to access non-public content, such as private tests and distribution materials.

Impact

Exploitation of this vulnerability could lead to unauthorized viewing of private content by logged-in users.

Remediation

Users are advised to update to iroha Board version v0.10.13 or later.

Added: Jun 26, 2025, 6:27 AM
Updated: Jun 26, 2025, 6:27 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.