Skip to main content

Vendor/product archive

born05 / two-factor_authentication CVEs

Beta · best-effort

2 CVEs tagged to born05 / two-factor_authentication0 Critical, 0 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2024-5657

Published Jun 6, 2024

The CraftCMS plugin Two-Factor Authentication in versions 3.3.1, 3.3.2 and 3.3.3 discloses the password hash of the currently authenticated user after submitting a valid TOTP.

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1