Vulnerabilities > CVE-2023-5889 - Insufficient Session Expiration vulnerability in PKP web Application Library

047910
CVSS 8.2 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
LOW
Availability impact
NONE
network
low complexity
pkp
CWE-613

Summary

Insufficient Session Expiration in GitHub repository pkp/pkp-lib prior to 3.3.0-16.

Vulnerable Configurations

Part Description Count
Application
Pkp
1

Common Weakness Enumeration (CWE)