Insufficient Session Expiration in GitHub repository pyload/pyload prior to 0.5.0b3.dev36.
According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."
Link | Tags |
---|---|
https://huntr.dev/bounties/af3101d7-fea6-463a-b7e4-a48be219e31b | issue tracking patch exploit third party advisory |
https://github.com/pyload/pyload/commit/c035714c0596b704b11af0f8a669352f128ad2d9 | third party advisory patch |