Vulnerabilities > Autumn Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-09-08 | CVE-2020-19137 | Cleartext Storage of Sensitive Information vulnerability in Autumn Project Autumn Incorrect Access Control in Autumn v1.0.4 and earlier allows remote attackers to obtain clear-text login credentials via the component "autumn-cms/user/getAllUser/?page=1&limit=10". | 7.5 |