Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h7jv-6rq7-jwqh

Опубликовано: 19 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

User enumeration vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow a remote user to retrieve all valid users registered in the application just by looking at the request response.

User enumeration vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow a remote user to retrieve all valid users registered in the application just by looking at the request response.

EPSS

Процентиль: 23%
0.00077
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-204

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

User enumeration vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow a remote user to retrieve all valid users registered in the application just by looking at the request response.

EPSS

Процентиль: 23%
0.00077
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-204