Lucene search

K

Dancer Security Vulnerabilities

cve
cve

CVE-2019-1010084

Dancer::Plugin::SimpleCRUD 1.14 and earlier is affected by: Incorrect Access Control. The impact is: Potential for unathorised access to data. The component is: Incorrect calls to _ensure_auth() wrapper result in authentication-checking not being applied to al...

6.5CVSS

6.4AI Score

0.001EPSS

2019-07-17 02:15 PM
21
cve
cve

CVE-2012-5572

CRLF injection vulnerability in the cookie method (lib/Dancer/Cookie.pm) in Dancer before 1.3114 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a cookie name, a different vulnerability than...

6.7AI Score

0.008EPSS

2014-05-30 02:55 PM
27