CVE-2023-32725
The website configured in the URL widget will receive a session cookie when testing or executing scheduled reports. The
The website configured in the URL widget will receive a session cookie when testing or executing scheduled reports. The received session cookie can then be used to access the frontend as the particular user.
CRITICAL · CVSS 9.6
EPSS 0.01064
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0