CVE-2022-34624
19.08.2022, 14:15
Mealie1.0.0beta3 does not terminate download tokens after a user logs out, allowing attackers to perform a man-in-the-middle attack via a crafted GET request.Enginsight
Vendor | Product | Version |
---|---|---|
mealie | mealie | 0.5.5 |
mealie | mealie | 1.0.0:beta3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration