CVE-2024-13060 | mintplex-labs anything-llm up to 1.3.0 Profile Picture ID improper authorization
A vulnerability labeled as critical has been found in mintplex-labs anything-llm up to 1.3.0. Affected by this vulnerability is an unknown functionality of the component Profile Picture Handler. The manipulation of the argument ID results in improper authorization.
This vulnerability is identified as CVE-2024-13060. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.