Total vulnerabilities in the database
A flaw was found in WildFly Elytron version 1.11.3.Final and before. When using WildFly Elytron FORM authentication with a session ID in the URL, an attacker could perform a session fixation attack. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Software | From | Fixed in |
---|---|---|
redhat / wildfly_elytron | - | 1.11.3 |
redhat / jboss_fuse | 7.0.0 | 7.0.0.x |
redhat / process_automation | 7.0 | 7.0.x |
redhat / descision_manager | 7.0 | 7.0.x |
redhat / codeready_studio | 12.0 | 12.0.x |
![]() |
- | 1.11.4 |