Loading HuntDB...

GHSA-2cjq-gpfr-mw4c

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

IBM Security Guardium Big Data Intelligence (SonarG) 4.0 does not set the secure attribute for cookies in HTTPS sessions, which could cause the user agent to send those cookies in plaintext over an HTTP session. IBM X-Force ID: 161210.

Related CVEs

Key Information

GHSA ID
GHSA-2cjq-gpfr-mw4c
Published
May 24, 2022 10:01 PM
Last Modified
December 13, 2022 3:30 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 1, 2025 6:26 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.