GHSA-84fq-6626-w5fg
MODERATECVE-2014-7193When CORS is enabled on a hapi route handler, it is possible to set a crumb token for a different domain. An attacker would need to have an application consumer visit a site they control, request a route supporting CORS, and then retrieve the token. With this token, they could possibly make requests to non CORS routes as this user.
- Affected
- < 3.0.0
- Fixed in
- 3.0.0
- Weakness
- CWE-284
- Published
- 2017-10-24
- Source
- github