GHSA-7wv8-chjv-grqmMediumCVSS 4.2

The IRIS web application in version 2.4.26 and possibly others contains a logout functionality...

Published
July 30, 2026
Last Modified
July 30, 2026

🔗 CVE IDs covered (1)

📋 Description

The IRIS web application in version 2.4.26 and possibly others contains a logout functionality which is ineffective. Stolen session cookies can therefore be misused for a long time.

🔗 References (4)