Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-93wx-j2qv-49fg

Опубликовано: 23 авг. 2023
Источник: github
Github: Прошло ревью
CVSS3: 5.3

Описание

hCaptcha for EXT:form Broken Access Control vulnerability

An issue was discovered in the hcaptcha (aka hCaptcha for EXT:form) extension before 2.1.2 for TYPO3. It fails to check that the required captcha field is submitted in the form data. allowing a remote user to bypass the CAPTCHA check.

Пакеты

Наименование

waldhacker/hcaptcha

composer
Затронутые версииВерсия исправления

< 2.1.2

2.1.2

EPSS

Процентиль: 25%
0.00085
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
nvd
больше 2 лет назад

An issue was discovered in the hcaptcha (aka hCaptcha for EXT:form) extension before 2.1.2 for TYPO3. It fails to check that the required captcha field is submitted in the form data. allowing a remote user to bypass the CAPTCHA check.

EPSS

Процентиль: 25%
0.00085
Низкий

5.3 Medium

CVSS3