Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hqjr-c587-3gpw

Опубликовано: 14 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5

Описание

A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This token is broadcasted over a WebSocket and can be intercepted by any local client listening on the connection.

A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This token is broadcasted over a WebSocket and can be intercepted by any local client listening on the connection.

EPSS

Процентиль: 3%
0.00019
Низкий

8.5 High

CVSS4

Дефекты

CWE-200

Связанные уязвимости

nvd
10 дней назад

A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This token is broadcasted over a WebSocket and can be intercepted by any local client listening on the connection.

EPSS

Процентиль: 3%
0.00019
Низкий

8.5 High

CVSS4

Дефекты

CWE-200