Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33583
HistoryJan 11, 2022 - 7:00 a.m.

Information Disclosure

2022-01-1107:00:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
nocodb
vulnerability
information disclosure
error message
password reset
email addresses
attacker

EPSS

0.001

Percentile

39.3%

nocodb is vulnerable to information disclosure.The library does not properly sanitize the error message of the password rest when requesting a password reset for a given email address, allowing an attacker to enumerate the registered users email addresses.

EPSS

0.001

Percentile

39.3%

Related for VERACODE:33583