CVE-2024-30155
HCL SX does not set the secure attribute on authorization tokens or session cookies. Attackers may potentially be able to obtain access to the cookie values via a Cross-Site-Forgery-Request (CSRF).
Vendor
Product
CWE
Yayın Tarihi
2025-03-26 08:15:12
Güncelleme
2025-10-30 15:03:17
Source Identifier
psirt@hcl.com
KEV Date Added
-