Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rpp7-mxqc-mp33

Опубликовано: 12 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.

All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.

EPSS

Процентиль: 14%
0.00046
Низкий

7.5 High

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 7.5
nvd
8 месяцев назад

All communication with the REST API is unencrypted (HTTP), allowing an attacker to intercept traffic between an actor and the webserver. This leads to the possibility of information gathering and downloading media files.

EPSS

Процентиль: 14%
0.00046
Низкий

7.5 High

CVSS3

Дефекты

CWE-319