296,733
Total vulnerabilities in the database
A flaw was found in WildFly Elytron version 1.11.3.Final and before. When using WildFly Elytron FORM authentication with a session ID in the URL, an attacker could perform a session fixation attack. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
| Software | From | Fixed in |
|---|---|---|
| redhat / wildfly_elytron | - | 1.11.3 |
| redhat / jboss_fuse | 7.0.0 | 7.0.0.x |
| redhat / process_automation | 7.0 | 7.0.x |
| redhat / descision_manager | 7.0 | 7.0.x |
| redhat / codeready_studio | 12.0 | 12.0.x |
org.wildfly.security / wildfly-elytron
|
- | 1.11.4 |