nicegui is vulnerable to Improper Authentication
75
High Risk
Affected versions of this package are affected by a broken access control due to inadequate isolation of session states across different browsers. When a user logs into one browser, they are automatically authenticated in all other browsers on the same device, including incognito mode, without needing to log in again. It may lead to unauthorized access, particularly when using shared or public devices.
You are affected if you are using a version that falls within the vulnerable range.
nicegui is vulnerable to Improper Authentication in versions 1.3.0 - 2.9.0.
Upgrade the NiceGUI library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant