Vulnerabilities > Lastyard

DATE CVE VULNERABILITY TITLE RISK
2023-02-01 CVE-2022-47714 Cleartext Transmission of Sensitive Information vulnerability in Lastyard Last Yard 22.09.81
Last Yard 22.09.8-1 does not enforce HSTS headers
network
low complexity
lastyard CWE-319
critical
9.8
2023-02-01 CVE-2022-47715 Missing Encryption of Sensitive Data vulnerability in Lastyard Last Yard 22.09.81
In Last Yard 22.09.8-1, the cookie can be stolen via via unencrypted traffic.
network
low complexity
lastyard CWE-311
5.3
2023-02-01 CVE-2022-47717 Unspecified vulnerability in Lastyard Last Yard 22.09.81
Last Yard 22.09.8-1 is vulnerable to Cross-origin resource sharing (CORS).
network
low complexity
lastyard
7.5