CVE-2024-52311
09.11.2024, 01:15
Authentication tokens issued via Cognito in data.all are not invalidated on log out, allowing for previously authenticated user to continue execution of authorized API Requests until token is expired.Enginsight
Vendor | Product | Version |
---|---|---|
amazon | data.all | 1.0.0 ≤ 𝑥 < 2.6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration