Description
NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-0044 | NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1. |
Github GHSA |
GHSA-v6jv-p6r8-j78w | NiceGUI On Air authentication issue |
References
History
Mon, 06 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 06 Jan 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1. | |
| Title | NiceGUI On Air authentication issue | |
| Weaknesses | CWE-287 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-06T16:47:43.489Z
Reserved: 2024-12-29T03:00:24.714Z
Link: CVE-2025-21618
Updated: 2025-01-06T16:47:36.944Z
Status : Deferred
Published: 2025-01-06T17:15:47.660
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-21618
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA