CVE-2022-3250

Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in pypi/rdiffweb

Identifiers

GHSA-m748-hjqg-rpp8, CVE-2022-3250

Package Slug

pypi/rdiffweb

Vulnerability

Sensitive Cookie in HTTPS Session Without 'Secure' Attribute

Description

Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository ikus060/rdiffweb prior to 2.4.6.

Affected Versions

All versions before 2.4.6

Solution

Upgrade to version 2.4.6 or above.

Last Modified

2022-09-23

source