cve/2022/CVE-2022-34624.md
2024-05-25 21:48:12 +02:00

610 B

CVE-2022-34624

Description

Mealie1.0.0beta3 does not terminate download tokens after a user logs out, allowing attackers to perform a man-in-the-middle attack via a crafted GET request.

POC

Reference

No PoCs from references.

Github