Lucene search

K
osvGoogleOSV:CVE-2019-15929
HistoryOct 24, 2019 - 4:15 p.m.

CVE-2019-15929

2019-10-2416:15:20
Google
osv.dev
3

7.2 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

61.9%

In Craft CMS through 3.1.7, the elevated session password prompt was not being rate limited like normal login forms, leading to the possibility of a brute force attempt on them.

7.2 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

61.9%