CVE Vulnerabilities

CVE-2024-41290

Cleartext Storage of Sensitive Information in a Cookie

Published: Oct 02, 2024 | Modified: Apr 23, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io minimus.io echohq.com

FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookies component.

Weakness

The product stores sensitive information in cleartext in a cookie.

Affected Software

Name Vendor Start Version End Version
Flatpress Flatpress 1.3.1 (including) 1.3.1 (including)

References