OSV 1.4.0 · unreviewed · 修改于 2022-02-11 08:00
发布时间
2022-02-11 08:00
GitHub 审查时间
—
NVD 发布时间
2022-02-10 18:15
源文件
advisories/unreviewed/2022/02/GHSA-xmp3-76fc-6jhm/GHSA-xmp3-76fc-6jhm.json
In Ifme, versions 1.0.0 to v.7.33.2 don’t properly invalidate a user’s session even after the user initiated logout. It makes it possible for an attacker to reuse the admin cookies either via local/network access or by other hypothetical attacks.
该公告没有提供结构化的受影响软件包信息。