CVE Vulnerabilities

CVE-2024-41290

Cleartext Storage of Sensitive Information in a Cookie

Published: Oct 02, 2024 | Modified: Apr 23, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookies component.

Weakness

The product stores sensitive information in cleartext in a cookie.

Affected Software

NameVendorStart VersionEnd Version
FlatpressFlatpress1.3.1 (including)1.3.1 (including)

References