Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31049
HistoryJun 24, 2021 - 3:44 a.m.

Insecure Session ID

2021-06-2403:44:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

0.002 Low

EPSS

Percentile

51.7%

org.eclipse.jetty, jetty-server has Insecure Session ID. The vulnerability exists due the SessionListener#sessionDestroyed() not validating the session ID if an exception is thrown.

References