CVE-2022-3993

Improper Restriction of Excessive Authentication Attempts in GitHub repository kareadita/kavita prior to 0.6.0.3.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kavitareader:kavita:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:20

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : 9.4
References () https://github.com/kareadita/kavita/commit/f8db37d3f9aa42d47e7c4f4ca839e892d3f97afb - Patch, Third Party Advisory () https://github.com/kareadita/kavita/commit/f8db37d3f9aa42d47e7c4f4ca839e892d3f97afb - Patch, Third Party Advisory
References () https://huntr.dev/bounties/bebd0cd6-18ec-469c-b6ca-19ffa9db0699 - Exploit, Patch, Third Party Advisory () https://huntr.dev/bounties/bebd0cd6-18ec-469c-b6ca-19ffa9db0699 - Exploit, Patch, Third Party Advisory

07 Nov 2023, 03:52

Type Values Removed Values Added
Summary Missing Authorization in GitHub repository kareadita/kavita prior to 0.6.0.3. Improper Restriction of Excessive Authentication Attempts in GitHub repository kareadita/kavita prior to 0.6.0.3.
CWE CWE-862

29 Jun 2023, 09:15

Type Values Removed Values Added
Summary Authentication Bypass by Primary Weakness in GitHub repository kareadita/kavita prior to 0.6.0.3. Missing Authorization in GitHub repository kareadita/kavita prior to 0.6.0.3.
CWE CWE-307 CWE-862

27 Jun 2023, 19:27

Type Values Removed Values Added
CWE CWE-287 CWE-307

Information

Published : 2022-11-14 18:15

Updated : 2024-11-21 07:20


NVD link : CVE-2022-3993

Mitre link : CVE-2022-3993

CVE.ORG link : CVE-2022-3993


JSON object : View

Products Affected

kavitareader

  • kavita
CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts