Loading...
Loading...
CFNetwork in Apple Mac OS X 10.5 before 10.5.7 does not properly parse noncompliant Set-Cookie headers, which allows remote attackers to obtain sensitive information by sniffing the network for "secure cookies" that are sent over unencrypted HTTP connections.
May 13, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-0144
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.