Security Advisory

CVE-2023-42769

9.8
CRITICAL

Vulnerability Description

The cookie session ID is of insufficient length and can be exploited by brute force, which may allow a remote attacker to obtain a valid session, bypass authentication, and manipulate the transmitter.
Published Date October 26, 2023
Official Source NIST NVD Advisory