Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Riccardo Bruzzone

Researcher fromRed Hat
#41858of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2022-14026
6.5
2022-07-22
Red Hat · Red Hat Openstack Horizon · CVE-2022-1655
**Name of the Vulnerable Software and Affected Versions** Red Hat OpenStack Horizon (affected versions not specified) **Description** An issue was found in Horizon on Red Hat OpenStack where session cookies are created without the HttpOnly flag, despite the HorizonSecureCookies setting being set to true. This could lead to a loss of confidentiality and integrity. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.