When using the default implementation of Verify to check a Captcha, verification can be bypassed. For example, if the first parameter is a non-existent id, the second parameter is an empty string, and the third parameter is true, the function will always consider the Captcha to be correct.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Go
Published: 2023-12-11T21:51:16.055Z
Updated: 2024-08-02T20:21:15.289Z
Reserved: 2023-10-06T17:06:26.221Z
Link: CVE-2023-45292
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-12-11T22:15:06.677
Modified: 2023-12-14T16:26:54.007
Link: CVE-2023-45292
Redhat
No data.