Loading...
Loading...
CRE Loaded 6.2.13.1 and earlier does not set the "Secure" attribute for cookies that are sent over HTTPS, which might allow remote attackers to sniff the cookies if they are sent over HTTP.
June 5, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-2558
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.