Hush Line is a free and open-source, anonymous-tip-line-as-a-service for organizations or individuals. The CSP policy applied on the `tips.hushline.app` website and bundled by default in this repository is trivial to bypass. This vulnerability has been patched in version 0.1.0.
Metrics
Affected Vendors & Products
References
History
Tue, 17 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hushline
Hushline hush Line |
|
Weaknesses | CWE-697 | |
CPEs | cpe:2.3:a:hushline:hush_line:*:*:*:*:*:*:*:* | |
Vendors & Products |
Hushline
Hushline hush Line |
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2024-06-28T17:03:19.661Z
Updated: 2024-08-02T04:12:25.177Z
Reserved: 2024-06-18T16:37:02.728Z
Link: CVE-2024-38522
Vulnrichment
Updated: 2024-08-02T04:12:25.177Z
NVD
Status : Modified
Published: 2024-06-28T17:15:03.527
Modified: 2024-11-21T09:26:10.720
Link: CVE-2024-38522
Redhat
No data.