CVE-2023-50270

CVSS v3.1 6.5 (Medium)
65% Progress
EPSS 0.04 % (16th)
0.04% Progress
Advisories 1
NVD Status Awaiting Analysis

Session Fixation Apache DolphinScheduler before version 3.2.0, which session is still valid after the password change.

Users are recommended to upgrade to version 3.2.1, which fixes this issue.

Weaknesses
CWE-384
Session Fixation
CWE-613
Insufficient Session Expiration
CVE Status
PUBLISHED
NVD Status
Awaiting Analysis
CNA
Apache Software Foundation
Published Date
2024-02-20 10:15:08
(7 months ago)
Updated Date
2024-08-29 20:35:41
(2 weeks ago)
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...