CVE-2014-125048: Kluks Xingwall
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability, which was classified as critical, has been found in kassi xingwall. This issue affects some unknown processing of the file app/controllers/oauth.js. The manipulation leads to session fixiation. The patch is named e9f0d509e1408743048e29d9c099d36e0e1f6ae7. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217559.
Affected products
- Kluks Xingwall: before e9f0d509e1408743048e29d9c099d36e0e1f6ae7 (fixed in e9f0d509e1408743048e29d9c099d36e0e1f6ae7)
Published 2023-01-06. Last modified 2026-06-17.