Premid · Premid · CVE-2020-24928
**Name of the Vulnerable Software and Affected Versions**
PreMiD versions through 2.1.3
**Description**
The issue concerns a locally hosted socketio web server in PreMiD, which is open to all origins on port 3020. This allows attackers to obtain sensitive Discord user information.
**Recommendations**
For versions through 2.1.3, consider restricting access to the socketio web server on port 3020 to prevent unauthorized access until a patch is available.