Description

The AuthKit library for Next.js provides helpers for authentication and session management using WorkOS & AuthKit with Next.js. A user can reuse an expired session by controlling the `x-workos-session` header. The vulnerability is patched in v0.4.2.

INFO

Published Date :

2024-03-29T15:23:02.184Z

Last Modified :

2024-08-02T01:17:58.024Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2024-29901 vulnerability.

Vendors Products
Workos
  • Authkit-nextjs

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact