codeigniter4/shield Security Advisories for v1.0.0-beta (4)
-
[MEDIUM] Cleartext Storage of Sensitive Information in HMAC SHA256 Authentication
PKSA-g1v8-swgx-hcqg CVE-2023-48707 GHSA-v427-c49j-8w6x
Affected version: <1.0.0-beta.8
Reported by:
GitHub -
[MEDIUM] Insertion of Sensitive Information into Log
PKSA-vyym-7sxb-hvkn CVE-2023-48708 GHSA-j72f-h752-mx4w
Affected version: <1.0.0-beta.8
Reported by:
GitHub -
[MEDIUM] Password Shucking Vulnerability
PKSA-ws2r-zvyw-rsjf CVE-2023-27580 GHSA-c5vj-f36q-p9vg
Affected version: <1.0.0-beta.4
Reported by:
GitHub -
[MEDIUM] CodeIgniter Shield Vulnerable to SameSite Attackers Bypassing the CSRF Protection
PKSA-mq5g-nbtj-sxc4 CVE-2022-35943 GHSA-5hm8-vh6r-2cjq
Affected version: =1.0.0-beta
Reported by:
GitHub