Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-7fqm-jm52-f9vc: rdiffweb vulnerable to Use of Cache Containing Sensitive Information

rdiffweb prior to version 2.4.9 is vulnerable to Use of Cache Containing Sensitive Information. Due to improper cache control, an attacker can view sensitive information even if they are not logged into an account. Version 2.4.9 contains a patch for this issue.

ghsa
#web#git

rdiffweb vulnerable to Use of Cache Containing Sensitive Information

Moderate severity GitHub Reviewed Published Sep 29, 2022 • Updated Sep 30, 2022

Related news

CVE-2022-3292

Use of Cache Containing Sensitive Information in GitHub repository ikus060/rdiffweb prior to 2.4.8.