Oneblog · Oneblog · CVE-2021-46085
**Name of the Vulnerable Software and Affected Versions**
OneBlog versions 2.2.8 and earlier
**Description**
The issue allows low-level administrators to delete high-level administrators beyond their authority due to insecure permissions.
**Recommendations**
For OneBlog versions 2.2.8 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.