This vulnerability allows an authenticated user to perform a Lifecycle Manager flow or other QuickLink for a target user outside of the defined QuickLink Population.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.