Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h46m-532h-mwqc

Опубликовано: 30 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.3

Описание

An improper session validation allows an unauthenticated attacker to cause certain request notifications to be executed in the context of an incorrect user by spoofing the client IP address.

An improper session validation allows an unauthenticated attacker to cause certain request notifications to be executed in the context of an incorrect user by spoofing the client IP address.

EPSS

Процентиль: 22%
0.0007
Низкий

5.3 Medium

CVSS4

Дефекты

CWE-384

Связанные уязвимости

nvd
около 1 года назад

An improper session validation allows an unauthenticated attacker to cause certain request notifications to be executed in the context of an incorrect user by spoofing the client IP address.

EPSS

Процентиль: 22%
0.0007
Низкий

5.3 Medium

CVSS4

Дефекты

CWE-384