Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3f47-vg2x-225m

Опубликовано: 11 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

EPSS

Процентиль: 1%
0.00008
Низкий

3.1 Low

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 3.1
redhat
7 месяцев назад

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

CVSS3: 3.1
nvd
7 месяцев назад

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

CVSS3: 3.1
fstec
7 месяцев назад

Уязвимость платформы автоматизации Red Hat Ansible Automation Platform, связанная с передачей секретной информации в виде открытого текста, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 1%
0.00008
Низкий

3.1 Low

CVSS3

Дефекты

CWE-319