CVE-2024-57433

Publication date

2025-01-31 00:00:00

Family

mitre

State

PUBLISHED

Description

macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control via the logout function. After a user logs out, their token is still available and fetches information in the logged-in state.