CVE-2024-57056
Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.
Incorrect cookie session handling in WombatDialer before 25.02 results in the full session identity being written to system logs and could be used by a malicious attacker to impersonate an existing user session.
Published 2025-02-18. Last modified 2026-06-17.