Missing Critical Step in Authentication in GitHub repository namelessmc/nameless prior to v2.0.2.
The product implements an authentication technique, but it skips a step that weakens the technique.
Link | Tags |
---|---|
https://huntr.dev/bounties/c216db15-fe2f-42a7-852a-6c47498cf069 | exploit third party advisory patch |
https://github.com/namelessmc/nameless/commit/98fe4b7fce5509e49e71f1357118db887b8b88e0 | third party advisory patch |