A format string vulnerability was found in the...
High severity
Unreviewed
Published
Jul 30, 2026
to the GitHub Advisory Database
•
Updated Aug 4, 2026
Description
Published by the National Vulnerability Database
Jul 30, 2026
Published to the GitHub Advisory Database
Jul 30, 2026
Last updated
Aug 4, 2026
A format string vulnerability was found in the Notification OAuth settings of ADM. The vulnerability occurs because user-controlled notification configuration input may be processed through an unsafe format string operation. An authenticated administrator can exploit this issue to disclose memory information or cause denial of service of the affected component.
Affected products and versions include: from ADM 4.1.0 through ADM 4.3.3.RUN1 as well as from ADM 5.0.0 through ADM 5.1.3.RI81.
References