Dec. 13, 2022, midnight |

Siemens ProductCERT Security Advisories cert-portal.siemens.com

The Mendix Workflow Commons module improperly handles access control for some module entities. This could allow authenticated remote attackers to read or delete sensitive information.


Mendix has released an update for the Mendix Workflow Commons module and recommends to update to the latest version.


Note that the fix might slightly impact the module’s functionality in specific cases.

access access control attackers commons control delete entities fix information latest sensitive sensitive information ssa update version vulnerability workflow

More from cert-portal.siemens.com / Siemens ProductCERT Security Advisories

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Computer and Forensics Investigator

@ ManTech | 221BQ - Cstmr Site,Springfield,VA

Senior Security Analyst

@ Oracle | United States

Associate Vulnerability Management Specialist

@ Diebold Nixdorf | Hyderabad, Telangana, India