CVE-2024-57433
31.01.2025, 22:15
macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control via the logout function. After a user logs out, their token is still available and fetches information in the logged-in state.Enginsight
Vendor | Product | Version |
---|---|---|
macrozheng | mall-tiny | 1.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration