Total vulnerabilities in the database
Due to a bug in the the default sign in functionality in the keystone node module before 0.3.16, incomplete email addresses could be matched. A correct password is still required to complete sign in.
Software | From | Fixed in |
---|---|---|
keystonejs / keystone | - | 0.3.16 |
![]() |
- | 0.3.16 |