Advisory #57
Title | XSS Hunter Express authentication bypass |
CVE ID | CVE-2021-41317 |
Vendor | @IAmMandatory |
Affected product | XSS Hunter Express |
Affected versions | <= 2021-09-16 |
Vulnerability type | CWE-287: Improper Authentication |
Description | XSS Hunter Express has a vulnerability that allows an attacker to bypass the authentication with a crafted request. |
Status | Fixed in 2021-09-17 |
Recommendation | Update to latest commit of the main branch. |