First published: Fri Jan 20 2023(Updated: )
Session fixation vulnerability in CuppaCMS thru commit 4c9b742b23b924cf4c1f943f48b278e06a17e297 on November 12, 2019 allows attackers to gain access to arbitrary user sessions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | <=2019-11-12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-29368 is rated as high with a CVSS score of 8.8.
To fix the session fixation vulnerability, update CuppaCMS to a version beyond commit 4c9b742b23b924cf4c1f943f48b278e06a17e297 released after November 12, 2019.