CVE-2024-48926

MEDIUM4.2EPSS 0.38%

Umbraco CMS logout page displayed before session expiration

Published: 10/22/2024Modified: 10/22/2024

Description

### Impact The Backoffice displays the logout page with a session timeout message before the server session has fully expired, causing users to believe they have been logged out approximately 30 seconds before they actually are.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM4.2CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N

References (3)