Description
Missing Critical Step in Authentication in GitHub repository namelessmc/nameless prior to v2.0.2.
References (2)
Core 2
Core References
Exploit, Patch, Third Party Advisory x_refsource_confirm
https://huntr.dev/bounties/c216db15-fe2f-42a7-852a-6c47498cf069
Patch, Third Party Advisory x_refsource_misc
https://github.com/namelessmc/nameless/commit/98fe4b7fce5509e49e71f1357118db887b8b88e0
Scores
CVSS v3
7.5
EPSS
0.0029
EPSS Percentile
52.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-304
Status
published
Products (1)
namelessmc/nameless
< 2.0.2
Published
Aug 15, 2022
Tracked Since
Feb 18, 2026