Vulnerabilities > Insufficient Session Expiration

DATE CVE VULNERABILITY TITLE RISK
2023-02-20 CVE-2022-48317 Insufficient Session Expiration vulnerability in Checkmk 2.0.0/2.1.0
Expired sessions were not securely terminated in the RestAPI for Tribe29's Checkmk <= 2.1.0p10 and Checkmk <= 2.0.0p28 allowing an attacker to use expired session tokens when communicating with the RestAPI.
network
low complexity
checkmk CWE-613
critical
9.8
2023-02-11 CVE-2022-34392 Insufficient Session Expiration vulnerability in Dell Supportassist for Home PCS
SupportAssist for Home PCs (versions 3.11.4 and prior) contain an insufficient session expiration Vulnerability.
local
low complexity
dell CWE-613
5.5
2023-02-11 CVE-2023-25562 Insufficient Session Expiration vulnerability in Datahub Project Datahub
DataHub is an open-source metadata platform.
network
low complexity
datahub-project CWE-613
critical
9.8
2023-01-26 CVE-2023-23614 Insufficient Session Expiration vulnerability in Pi-Hole web Interface
Pi-hole®'s Web interface (based off of AdminLTE) provides a central location to manage your Pi-hole.
network
low complexity
pi-hole CWE-613
8.8
2023-01-26 CVE-2023-24426 Insufficient Session Expiration vulnerability in Jenkins Azure AD
Jenkins Azure AD Plugin 303.va_91ef20ee49f and earlier does not invalidate the previous session on login.
network
low complexity
jenkins CWE-613
8.8
2023-01-17 CVE-2023-22732 Insufficient Session Expiration vulnerability in Shopware
Shopware is an open source commerce platform based on Symfony Framework and Vue js.
network
low complexity
shopware CWE-613
critical
9.8
2023-01-12 CVE-2023-0227 Insufficient Session Expiration vulnerability in Pyload
Insufficient Session Expiration in GitHub repository pyload/pyload prior to 0.5.0b3.dev36.
network
low complexity
pyload CWE-613
6.5
2023-01-11 CVE-2023-22492 Insufficient Session Expiration vulnerability in Zitadel
ZITADEL is a combination of Auth0 and Keycloak.
network
high complexity
zitadel CWE-613
5.9
2023-01-05 CVE-2022-46177 Insufficient Session Expiration vulnerability in Discourse
Discourse is an option source discussion platform.
network
low complexity
discourse CWE-613
8.1
2023-01-05 CVE-2022-43844 Insufficient Session Expiration vulnerability in IBM Robotic Process Automation for Cloud PAK
IBM Robotic Process Automation for Cloud Pak 20.12 through 21.0.3 is vulnerable to broken access control.
network
low complexity
ibm CWE-613
8.8