restorePermissionState of the file PermissionManagerServiceImpl.java. The manipulation leads to permission issues.This vulnerability is traded as CVE-2023-21270. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.