Improper Restriction of Excessive Authentication Attempts in GitHub repository wger-project/wger prior to 2.2.
The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.
Link | Tags |
---|---|
https://huntr.dev/bounties/f0d85efa-4e78-4b1d-848f-edea115af64b | third party advisory exploit |
https://github.com/wger-project/wger/commit/5e3167e3a2dc95836fa2607fe201524c031a2c4c | third party advisory patch |