Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34592
HistoryMar 10, 2022 - 4:35 a.m.

Insecure Session Management

2022-03-1004:35:14
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16

0.001 Low

EPSS

Percentile

22.7%

shopware uses insecure session management. The library does not log out user sessions after the user password change using password recovery, allowing an attacker to gain access to the system if an old session token was obtained.

0.001 Low

EPSS

Percentile

22.7%

Related for VERACODE:34592