workos kayıtları
workos üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-524 Use of Cache Containing Sensitive Information1
- CWE-532 Insertion of Sensitive Information into Log File1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
32İzleyin | CVE-2024-29901İstismar yok | @workos-inc/authkit-nextjs session replay vulnerabilityworkos · authkit-nextjs · CWE-294 | Yüksek8,1 | — | %0,7 | 29 Mar 2024 |
32İzleyin | CVE-2025-64762İstismar yok | authkit-nextjs may let session cookies be cached in CDNsworkos · authkit-nextjs · CWE-524 | Yüksek8,0 | — | %0,4 | 20 Kas 2025 |
8İzleyin | CVE-2024-51752İstismar yok | Refresh tokens are logged when the debug flag is enabled in @workos-inc/authkit-nextjsworkos · authkit-nextjs · CWE-532 | Düşük2,1 | — | %0,2 | 5 Kas 2024 |
- CVE-2024-2990132İzleyin
@workos-inc/authkit-nextjs session replay vulnerability
YüksekCVSS 8,1İstismar yokEPSS %1workos · authkit-nextjs29 Mar 2024
- CVE-2025-6476232İzleyin
authkit-nextjs may let session cookies be cached in CDNs
YüksekCVSS 8,0İstismar yokEPSS %0workos · authkit-nextjs20 Kas 2025
- CVE-2024-517528İzleyin
Refresh tokens are logged when the debug flag is enabled in @workos-inc/authkit-nextjs
DüşükCVSS 2,1İstismar yokEPSS %0workos · authkit-nextjs5 Kas 2024