CWE-360 · 2 records
Trust of System Event Data
CVEs in this class
2 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
27Monitor | CVE-2024-3371No exploit | Insufficient validation of external input in Compass may enable MITM attacksmongodb · compass · CWE-360 | Medium6.8 | — | 0.2% | Apr 24, 2024 |
21Monitor | CVE-2017-0911No exploit | Twitter Kit for iOS versions 3.0 to 3.2.1 is vulnerable to a callback verification flaw in the "Login with Twitter" component allowing an attwitter · twitter kit · CWE-360 | Medium5.4 | — | 0.5% | Feb 9, 2018 |
- CVE-2024-337127Monitor
Insufficient validation of external input in Compass may enable MITM attacks
MediumCVSS 6.8No exploitEPSS 0%mongodb · compassApr 24, 2024
- CVE-2017-091121Monitor
Twitter Kit for iOS versions 3.0 to 3.2.1 is vulnerable to a callback verification flaw in the "Login with Twitter" component allowing an at
MediumCVSS 5.4No exploitEPSS 1%twitter · twitter kitFeb 9, 2018