CVE-2019-16354: Beego

Medium severity, CVSS 4.7. EPSS: 0.2% chance of exploitation in the next 30 days.

The File Session Manager in Beego 1.10.0 allows local users to read session files because there is a race condition involving file creation within a directory with weak permissions.

Affected products

  • Beego Beego: version 1.10.0 only

Published 2019-09-16. Last modified 2026-06-17.