Loading HuntDB...

GHSA-mvvm-g7jw-9p4w

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 is missing the HTTP Strict Transport Security header. Users can navigate by mistake to the unencrypted version of the web application or accept invalid certificates. This leads to sensitive data being sent unencrypted over the wire. IBM X-Force ID: 158661.

Related CVEs

Key Information

GHSA ID
GHSA-mvvm-g7jw-9p4w
Published
May 24, 2022 4:47 PM
Last Modified
February 3, 2023 9:30 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 4, 2025 6:27 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.