CVE-2023-26770
04.10.2024, 19:15
TaskCafe 0.3.2 lacks validation in the Cookie value. Any unauthenticated attacker who knows a registered UserID can change the password of that user.Enginsight
| Vendor | Product | Version |
|---|---|---|
| taskcafe_project | taskcafe | 0.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration