Beveiligingsadvies

CVE-2019-19375

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-11-28 16:16:36
Laatst bijgewerkt 2024-08-05 02:16:47
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

In Octopus Deploy before 2019.10.7, in a configuration where SSL offloading is enabled, the CSRF cookie was sometimes sent without the secure attribute. (The fix for this was backported to LTS versions 2019.6.14 and 2019.9.8.)