The login function of Mealie v1.0.0beta-2 allows attackers to enumerate existing usernames by timing the server's response time.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-07-14T21:47:09

Updated: 2024-08-03T07:39:51.073Z

Reserved: 2022-06-05T00:00:00

Link: CVE-2022-32425

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-07-14T22:15:08.950

Modified: 2022-07-20T17:04:58.487

Link: CVE-2022-32425

cve-icon Redhat

No data.