Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-53x4-p5j7-29q6

Опубликовано: 05 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Insufficient Session Expiration vulnerability in Apache Answer.

This issue affects Apache Answer: through 2.0.1.

Administrative API keys remained usable after the owning administrator was demoted or the account was marked inactive, suspended, or deleted, allowing continued access until the keys were explicitly removed. Users are recommended to upgrade to version 2.0.2, which fixes the issue.

Insufficient Session Expiration vulnerability in Apache Answer.

This issue affects Apache Answer: through 2.0.1.

Administrative API keys remained usable after the owning administrator was demoted or the account was marked inactive, suspended, or deleted, allowing continued access until the keys were explicitly removed. Users are recommended to upgrade to version 2.0.2, which fixes the issue.

EPSS

Процентиль: 28%
0.00349
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 9.1
nvd
19 дней назад

Insufficient Session Expiration vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Administrative API keys remained usable after the owning administrator was demoted or the account was marked inactive, suspended, or deleted, allowing continued access until the keys were explicitly removed. Users are recommended to upgrade to version 2.0.2, which fixes the issue.

EPSS

Процентиль: 28%
0.00349
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-613