Filtered by vendor Redhat Subscriptions
Filtered by product Build Of Quarkus Subscriptions
Total 21 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-0044 2 Quarkus, Redhat 3 Quarkus, Build Of Quarkus, Quarkus 2024-08-02 6.1 Medium
If the Quarkus Form Authentication session cookie Path attribute is set to `/` then a cross-site attack may be initiated which might lead to the Information Disclosure. This attack can be prevented with the Quarkus CSRF Prevention feature.