Vulnerabilities > 63Moons > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-11-04 | CVE-2024-51556 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in 63Moons Aero and Wave 2.0 This vulnerability exists in the Wave 2.0 due to insufficient encryption of sensitive data received at the API response. | 6.5 |
2024-11-04 | CVE-2024-51557 | Allocation of Resources Without Limits or Throttling vulnerability in 63Moons Aero and Wave 2.0 This vulnerability exists in the Wave 2.0 due to missing rate limiting on OTP requests in an API endpoint. | 6.5 |
2024-11-04 | CVE-2024-51559 | Unspecified vulnerability in 63Moons Aero and Wave 2.0 This vulnerability exists in the Wave 2.0 due to improper authorization checks on certain API endpoints. | 6.5 |
2024-11-04 | CVE-2024-51560 | Information Exposure Through an Error Message vulnerability in 63Moons Aero and Wave 2.0 This vulnerability exists in the Wave 2.0 due to improper exception handling for invalid inputs at certain API endpoint. | 4.3 |