CVEs affecting projects tracked on Release Alert, from NVD & OSV.
CVE-2022-34624 — MEDIUM severity vulnerability | Release Alert
CVE-2022-34624
5.9
MEDIUMCVSS v3
Published
August 19, 2022
Affected
2 projects
Assigned by
MITRE
Severity scale
010
Description
Mealie1.0.0beta3 does not terminate download tokens after a user logs out, allowing attackers to perform a man-in-the-middle attack via a crafted GET request.
GitHubMealie is a self hosted recipe manager and meal planner with a RestAPI backend and a reactive frontend application built in Vue for a pleasant user experience for the whole family. Easily add recipes into your database by providing the url and mealie will automatically import the relevant data or add a family recipe with the UI editor