Safety vulnerability ID: 45816
The information on this page was manually curated by our Cybersecurity Intelligence Team.
FreeTAKServer 1.9.8 and prior contain a hardcoded Flask secret key which allows attackers to create crafted cookies to bypass authentication or escalate privileges. See CVE-2022-25510.
https://github.com/FreeTAKTeam/FreeTakServer/issues/292
Latest version: 2.2.1
An open source server for the TAK family of applications.
FreeTAKServer 1.9.8 contains a hardcoded Flask secret key which allows attackers to create crafted cookies to bypass authentication or escalate privileges. See CVE-2022-25510.
MISC:https://github.com/FreeTAKTeam/FreeTakServer/issues/292: https://github.com/FreeTAKTeam/FreeTakServer/issues/292
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application