CVE-2023-53957 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kimai 1.30.10 contains a SameSite cookie vulnerability that allows attackers to steal user session cookies through malicious exploitation. Attackers can trick v…
High CVSS: 8.5

CVE-2023-53957

Kimai 1.30.10 contains a SameSite cookie vulnerability that allows attackers to steal user session cookies through malicious exploitation. Attackers can trick victims into executing a crafted PHP script that captures and writes session cookie information to a file, enabling potential session hijacking.
Vendor
Kimai
Product
Kimai
CWE
CWE-1275
Yayın Tarihi
2025-12-19 21:15:52
Güncelleme
2026-02-19 21:53:08
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar