Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38922
HistoryJan 19, 2023 - 4:54 a.m.

Session Fixation

2023-01-1904:54:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
19
session fixation
github.com/kubeoperator/kubepi
vulnerability
insufficient session expiration
hijack

EPSS

0.001

Percentile

31.2%

github.com/KubeOperator/kubepi is vulnerable to Session Fixation. The vulnerability exists due to insufficient session expiration mechanisms in the library, allowing an attacker to hijack the legitimate user sessions.

EPSS

0.001

Percentile

31.2%