Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository pyload/pyload prior to 0.5.0b3.dev32.
References
Link | Resource |
---|---|
https://huntr.dev/bounties/ed88e240-99ff-48a1-bf32-8e1ef5f13cce | Exploit Patch Third Party Advisory |
https://github.com/pyload/pyload/commit/7b53b8d43c2c072b457dcd19c8a09bcfc3721703 | Patch Third Party Advisory |
Configurations
Information
Published : 2023-01-04 14:15
Updated : 2023-01-11 08:01
NVD link : CVE-2023-0055
Mitre link : CVE-2023-0055
JSON object : View
CWE
CWE-319
Cleartext Transmission of Sensitive Information
Products Affected
pyload
- pyload