Логотип exploitDog
bind:CVE-2024-29026
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-29026

Количество 2

Количество 2

nvd логотип

CVE-2024-29026

почти 2 года назад

Owncast is an open source, self-hosted, decentralized, single user live video streaming and chat server. In versions 0.1.2 and prior, a lenient CORS policy allows attackers to make a cross origin request, reading privileged information. This can be used to leak the admin password. Commit 9215d9ba0f29d62201d3feea9e77dcd274581624 fixes this issue.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-v99w-r56h-g23v

больше 1 года назад

Owncast Cross-Site Request Forgery vulnerability

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-29026

Owncast is an open source, self-hosted, decentralized, single user live video streaming and chat server. In versions 0.1.2 and prior, a lenient CORS policy allows attackers to make a cross origin request, reading privileged information. This can be used to leak the admin password. Commit 9215d9ba0f29d62201d3feea9e77dcd274581624 fixes this issue.

CVSS3: 8.2
0%
Низкий
почти 2 года назад
github логотип
GHSA-v99w-r56h-g23v

Owncast Cross-Site Request Forgery vulnerability

CVSS3: 8.2
0%
Низкий
больше 1 года назад

Уязвимостей на страницу