A low-privilege user could assign themselves to an administrative group, escalating to full administrative control of the NSA skills-service application.
Privilege escalation via unauthorized admin-group assignment.
cve.org record · GitHub Security Advisory GHSA-67x3-r85f-822r