CVE-2022-4409 Information

Description

Sensitive Cookie in HTTPS Session Without ‘Secure’ Attribute in GitHub repository thorsten/phpmyfaq prior to 3.1.9.

Reference

https://github.com/thorsten/phpmyfaq/commit/8b47f38 https://huntr.dev/bounties/5915ed4c-5fe2-42e7-8fac-5dd0d032727c

Share on: