Insufficient Session Expiration in GitHub repository nocodb/nocodb prior to 0.91.7+.
According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."
Link | Tags |
---|---|
https://huntr.dev/bounties/39523d51-fc5c-48b8-a082-171da79761bb | patch third party advisory exploit |
https://github.com/nocodb/nocodb/commit/c9b5111b25aea2781e19395a8e9107ddbd235a2b | third party advisory patch |