Total vulnerabilities in the database
In affected versions of Octopus Server it is possible for a session token to be valid indefinitely due to improper validation of the session token parameters.
Software | From | Fixed in |
---|---|---|
octopus / octopus_server | 2022.4.0 | 2022.4.2898 |
octopus / octopus_server | 2022.3.0 | 2022.3.10586 |
octopus / octopus_server | - | 2022.2.8351 |