Beveiligingsadvies

CVE-2023-45292

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-12-11 21:51:16
Laatst bijgewerkt 2024-08-02 20:21:15
Toegewezen door Go
CVSS-score geen score
Status PUBLISHED

Beschrijving

When using the default implementation of Verify to check a Captcha, verification can be bypassed. For example, if the first parameter is a non-existent id, the second parameter is an empty string, and the third parameter is true, the function will always consider the Captcha to be correct.