Session Fixation Apache DolphinScheduler before version 3.2.0, which session is still valid after the password change. Users are recommended to upgrade to version 3.2.1, which fixes this issue.
CVSS

No CVSS.

History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apache

Published: 2024-02-20T10:01:32.260Z

Updated: 2024-02-23T10:17:35.425Z

Reserved: 2023-12-06T02:25:09.094Z


Link: CVE-2023-50270

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-02-20T10:15:08.140

Modified: 2024-02-23T11:15:07.823


Link: CVE-2023-50270

JSON object: View

cve-icon Redhat Information

No data.

CWE