CVE-2021-25979

Apostrophe CMS versions between 2.63.0 to 3.3.1 affected by an insufficient session expiration vulnerability, which allows unauthenticated remote attackers to hijack recently logged-in users' sessions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apostrophecms:apostrophecms:*:*:*:*:*:*:*:*

Information

Published : 2021-11-08 15:15

Updated : 2021-11-18 18:27


NVD link : CVE-2021-25979

Mitre link : CVE-2021-25979


JSON object : View

Products Affected

apostrophecms

  • apostrophecms
CWE
CWE-613

Insufficient Session Expiration