NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1.
Metrics
Affected Vendors & Products
References
History
Mon, 06 Jan 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 06 Jan 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1. | |
Title | NiceGUI On Air authentication issue | |
Weaknesses | CWE-287 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-01-06T16:30:11.349Z
Updated: 2025-01-06T16:47:43.489Z
Reserved: 2024-12-29T03:00:24.714Z
Link: CVE-2025-21618
Vulnrichment
Updated: 2025-01-06T16:47:36.944Z
NVD
Status : Received
Published: 2025-01-06T17:15:47.660
Modified: 2025-01-06T17:15:47.660
Link: CVE-2025-21618
Redhat
No data.