Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-53861

Опубликовано: 11 июл. 2025
Источник: nvd
CVSS3: 3.1
EPSS Низкий

Описание

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:ansible_automation_platform:2.0:*:*:*:*:*:*:*

EPSS

Процентиль: 0%
0.00007
Низкий

3.1 Low

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 3.1
redhat
5 месяцев назад

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

CVSS3: 3.1
github
5 месяцев назад

A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the-Middle (MitM) and Cross-site scripting (XSS) attacks allowing attackers to read transmitted data.

EPSS

Процентиль: 0%
0.00007
Низкий

3.1 Low

CVSS3

Дефекты

CWE-319