CWE-539 · 7 kayıt
Use of Persistent Cookies Containing Sensitive Information
Bu sınıftaki CVE’ler
7 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2025-27673İstismar yok | Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Cookie Returned in Response Body OVprinterlogic · vasion print · CWE-539 | Kritik9,1 | — | %0,5 | 5 Mar 2025 |
34İzleyin | CVE-2024-39275İstismar yok | Advantech ADAM-5630 Use of Persistent Cookies Containing Sensitive Informationadvantech · adam-5630 firmware · CWE-539 | Yüksek8,5 | — | %0,4 | 27 Eyl 2024 |
30İzleyin | CVE-2023-30861Kavram kanıtı | Flask vulnerable to possible disclosure of permanent session cookie due to missing Vary: Cookie headerpalletsprojects · flask · CWE-539 | Yüksek7,5 | — | %1,3 | 2 May 2023 |
21İzleyin | CVE-2021-27463İstismar yok | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer.emerson · x-stream enhanced xegp firmware · CWE-539 | Orta5,3 | — | %0,9 | 20 May 2021 |
21İzleyin | CVE-2025-52633İstismar yok | HCL AION is susceptible to Missing Content-Security-Policyhcltech · aion · CWE-539 | Orta5,3 | — | %0,2 | 3 Şub 2026 |
16İzleyin | CVE-2026-24318İstismar yok | Insecure Session Management vulnerability in SAP BusinessObjects Business Intelligence Platformsap_se · sap businessobjects business intelligence platform · CWE-539 | Orta4,2 | — | %0,2 | 13 Nis 2026 |
9İzleyin | CVE-2026-35192İstismar yok | Session fixation via public cached pages and SESSION_SAVE_EVERY_REQUESTdjangoproject · django · CWE-539 | Düşük2,3 | — | %0,7 | 5 May 2026 |
- CVE-2025-2767336İzleyin
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Cookie Returned in Response Body OV
KritikCVSS 9,1İstismar yokEPSS %1printerlogic · vasion print5 Mar 2025
- CVE-2024-3927534İzleyin
Advantech ADAM-5630 Use of Persistent Cookies Containing Sensitive Information
YüksekCVSS 8,5İstismar yokEPSS %0advantech · adam-5630 firmware27 Eyl 2024
- CVE-2023-3086130İzleyin
Flask vulnerable to possible disclosure of permanent session cookie due to missing Vary: Cookie header
YüksekCVSS 7,5Kavram kanıtıEPSS %1palletsprojects · flask2 May 2023
- CVE-2021-2746321İzleyin
A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer.
OrtaCVSS 5,3İstismar yokEPSS %1emerson · x-stream enhanced xegp firmware20 May 2021
- CVE-2025-5263321İzleyin
HCL AION is susceptible to Missing Content-Security-Policy
OrtaCVSS 5,3İstismar yokEPSS %0hcltech · aion3 Şub 2026
- CVE-2026-2431816İzleyin
Insecure Session Management vulnerability in SAP BusinessObjects Business Intelligence Platform
OrtaCVSS 4,2İstismar yokEPSS %0sap_se · sap businessobjects business intelligence platform13 Nis 2026
- CVE-2026-351929İzleyin
Session fixation via public cached pages and SESSION_SAVE_EVERY_REQUEST
DüşükCVSS 2,3İstismar yokEPSS %1djangoproject · django5 May 2026