Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Lukehutch

#48513de 53,635
5.2CVSS total
Vulnerabilidades · 1
PT-2023-10141
5.2
2023-01-09
Lukehutch · Gribbit · CVE-2014-125071
**Name of the Vulnerable Software and Affected Versions** lukehutch Gribbit (affected versions not specified) **Description** A problematic issue was found in lukehutch Gribbit, affecting the `messageReceived` function of the file `src/gribbit/request/HttpRequestHandler.java`. This issue leads to missing origin validation in websockets. **Recommendations** Apply a patch to fix this issue, specifically the patch named `620418df247aebda3dd4be1dda10fe229ea505dd`. As a temporary workaround, consider disabling the `messageReceived` function until a patch is available. Restrict access to the vulnerable `HttpRequestHandler.java` file to minimize the risk of exploitation.