silverstripe/hybridsessions Security Advisories for 2.3.0-rc1 (1)
-
[MEDIUM] CVE-2022-24444: Hybridsessions does not expire session id on logout
PKSA-djwy-1sd6-j41s CVE-2022-24444 GHSA-c7q8-m4xw-c674
Affected version: >=1.0.0,<2.4.1|>=2.5.0,<2.5.1
Reported by:
GitHub, FriendsOfPHP/security-advisories