Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2024-23679
CVE-2024-23679
Enonic XP versions less than 7.7.4 are vulnerable to a session fixation issue. An remote and unauthenticated attacker can use prior sessions due to the lack of invalidating session attributes.
Published Jan 26, 2026
https://github.com/advisories/GHSA-4hrp-m3f2-643j
https://github.com/advisories/GHSA-4m5p-5w5w-3jcf
CVSS Score
Critical
9.8
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
No packages found
Try adjusting your search terms.
CVE-2024-23679 | Components Impacted | Sonatype Guide | Sonatype Guide