Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g28x-633f-r8qf

Опубликовано: 19 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 4.7
nvd
около 4 лет назад

Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-613