Beveiligingsadvies

CVE-2023-2850

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-07-25 11:13:18
Laatst bijgewerkt 2024-10-15 19:05:55
Toegewezen door snyk
CVSS-score 4.7
Status PUBLISHED

Beschrijving

NodeBB is affected by a Cross-Site WebSocket Hijacking vulnerability due to missing validation of the request origin. Exploitation of this vulnerability allows certain user information to be extracted by attacker.