A Session Fixation issue exists in CodeIgniter before 3.1.9 because session.use_strict_mode in the Session Library was mishandled.
References
Link | Resource |
---|---|
https://github.com/bcit-ci/CodeIgniter/commit/800a20d6c4662d99ae0988b2f8f2238bb8bb29db | |
https://www.codeigniter.com/user_guide/changelog.html | Release Notes Vendor Advisory |
https://www.codeigniter.com/user_guide/changelog.html | Release Notes Vendor Advisory |
Configurations
History
09 Jun 2025, 06:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
21 Nov 2024, 03:44
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.codeigniter.com/user_guide/changelog.html - Release Notes, Vendor Advisory |
Information
Published : 2018-06-17 20:29
Updated : 2025-06-09 06:15
NVD link : CVE-2018-12071
Mitre link : CVE-2018-12071
CVE.ORG link : CVE-2018-12071
JSON object : View
Products Affected
codeigniter
- codeigniter
CWE
CWE-384
Session Fixation