An attacker with local access to the machine could...
Low severity
Unreviewed
Published
Jun 8, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jun 7, 2023
Published to the GitHub Advisory Database
Jun 8, 2023
Last updated
Apr 4, 2024
An attacker with local access to the machine could record the traffic,
which could allow them to resend requests without the server
authenticating that the user or session are valid.
References