CVE-2024-50478

CRITICAL

Swoopnow 1-click Login - Authentication Bypass

Title source: rule

Description

Authentication Bypass by Primary Weakness vulnerability in Swoop 1-Click Login: Passwordless Authentication allows Authentication Bypass.This issue affects 1-Click Login: Passwordless Authentication: 1.4.5.

Exploits (1)

nomisec WORKING POC
by RandomRobbieBF · poc
https://github.com/RandomRobbieBF/CVE-2024-50478

Scores

CVSS v3 9.8
EPSS 0.3461
EPSS Percentile 96.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-305 CWE-287
Status published

Affected Products (1)

swoopnow/1-click_login\

Timeline

Published Oct 28, 2024
Tracked Since Feb 18, 2026