← back
CVE-2023-0044

CVE-2023-0044

EPSS 0.5%
If the Quarkus Form Authentication session cookie Path attribute is set to `/` then a cross-site attack may be initiated which might lead to the Information Disclosure. This attack can be prevented with the Quarkus CSRF Prevention feature.
Affected products
n/a · quarkus-vertx-http

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →