# Bit integrations <= 2.8.7 - Unauthenticated Server-Side Request Forgery via Form Field Upload Mapping ## 漏洞概述 Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation …
### 漏洞概述 - **漏洞名称**:Org-scoped read API key can read other tenants' webhook secrets and delivery logs via Supabase PostgREST (cross-tenant RLS/scoping bypass) - **描述**:一个具有只读模式并限制到特定组织(ORG_A)的Capgo AP…
### 漏洞概述 **漏洞名称**: Edge Case Access Control Rule Domain Miss Due to Lack of Canonicalization **漏洞ID**: GHSA-j748-h363-wqj8 **发布日期**: 3周前 **严重程度**: 低 **CVSSv4 Baseline Score**: 2.4 **CVSSv4 Weighted Sc…