Podatność CVE-2023-22479


Publikacja: 2023-01-10

Opis:
KubePi is a modern Kubernetes panel. A session fixation attack allows an attacker to hijack a legitimate user session, versions 1.6.3 and below are susceptible. A patch will be released in version 1.6.4.

Typ:

CWE-384

(Session Fixation)

 Referencje:
https://github.com/KubeOperator/KubePi/security/advisories/GHSA-v4w5-r2xc-7f8h

Copyright 2024, cxsecurity.com

 

Back to Top