Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29031
HistoryJan 20, 2021 - 6:58 a.m.

Insecure Cross-Origin Resource Sharing Configuration

2021-01-2006:58:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
socket.io
cross-origin
configuration
information disclosure

EPSS

0.002

Percentile

53.0%

socket.io uses an insecure cross-origin resource sharing configuration. All domains are whitelisted by default and allows cross-origin resource sharing, leading to information disclosure.

EPSS

0.002

Percentile

53.0%