Total vulnerabilities in the database
An issue was discovered in eZ Publish Ibexa Kernel before 7.5.15.1. The /user/sessions endpoint can be abused to determine account existence.
Software | From | Fixed in |
---|---|---|
ibexa / ez_platform_kernel | 7.5.0 | 7.5.15.1 |
ibexa / ez_platform_kernel | 6.13.0 | 6.13.8.1 |
![]() |
6.13.0 | 6.13.8.1 |
![]() |
7.5.0 | 7.5.15.1 |