Vulnerabilities (CVE)

Filtered by vendor Pyload Subscribe
Filtered by product Pyload
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-0055 1 Pyload 1 Pyload 2024-11-21 N/A 5.3 MEDIUM
Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository pyload/pyload prior to 0.5.0b3.dev32.
CVE-2024-1240 1 Pyload 1 Pyload 2024-11-19 N/A 6.1 MEDIUM
An open redirection vulnerability exists in pyload/pyload version 0.5.0. The vulnerability is due to improper handling of the 'next' parameter in the login functionality. An attacker can exploit this vulnerability to redirect users to malicious sites, which can be used for phishing or other malicious activities. The issue is fixed in pyload-ng 0.5.0b3.dev79.