devhub 0.102.0 was discovered to contain a broken session control.
According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."
Link | Tags |
---|---|
http://devhub.com | not applicable |
https://app.devhubapp.com/ | vendor advisory |
https://devhubapp.com/ | vendor advisory |
https://medium.com/%40sc0p3hacker/cve-2022-41542-session-mis-configuration-in-devhub-application-ca956bb9027a |