Vulnerabilities (CVE)

Filtered by vendor Apostrophecms Subscribe
Filtered by product Apostrophecms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25979 1 Apostrophecms 1 Apostrophecms 2021-11-18 7.5 HIGH 9.8 CRITICAL
Apostrophe CMS versions between 2.63.0 to 3.3.1 affected by an insufficient session expiration vulnerability, which allows unauthenticated remote attackers to hijack recently logged-in users' sessions.