Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Streamcfd

#36536of 53,608
7.5Total CVSS
Vulnerabilities · 1
PT-2025-4304
7.5
2025-01-06
Nicegui · Nicegui · CVE-2025-21618
**Name of the Vulnerable Software and Affected Versions** NiceGUI versions prior to 2.9.1 **Description** The issue concerns a session management problem in NiceGUI, a Python-based UI framework. Before version 2.9.1, authenticating with NiceGUI would log the user into all browsers, including those in incognito mode. This means that once a user logged in to one browser, all other browsers would also be logged in without requiring a password, even in incognito mode. The impact of this issue is considered high. **Recommendations** For versions prior to 2.9.1, update to version 2.9.1 to resolve the issue. As a temporary workaround, consider restricting access to sensitive information or using an alternative authentication method until the update can be applied.