Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2889-4jg5-2f75

Опубликовано: 06 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

If a user tries to login but the provided credentials are incorrect a log is created. The data for this POST requests is not validated and it’s possible to send giant payloads which are then logged.

If a user tries to login but the provided credentials are incorrect a log is created. The data for this POST requests is not validated and it’s possible to send giant payloads which are then logged.

EPSS

Процентиль: 19%
0.00061
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 месяца назад

If a user tries to login but the provided credentials are incorrect a log is created. The data for this POST requests is not validated and it’s possible to send giant payloads which are then logged.

EPSS

Процентиль: 19%
0.00061
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-770