CVE-2023-23929
04.03.2023, 00:15
vantage6 is a privacy preserving federated learning infrastructure for secure insight exchange. Currently, the refresh token is valid indefinitely. The refresh token should get a validity of 24-48 hours. A fix was released in version 3.8.0.Enginsight
Vendor | Product | Version |
---|---|---|
vantage6 | vantage6 | 𝑥 < 3.8.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References