Security Advisory
CVE-2021-29247
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
BTCPay Server through 1.0.7.0 could allow a remote attacker to obtain sensitive information, caused by failure to set the HTTPOnly flag for a cookie.