CVE-2025-28244
PoC —CVSS 3.1
8.8 high
EPSS
<1%p38
Published
()
Modified
Description
Insecure Permissions vulnerability in the Local Storage in Alteryx Server 2023.1.1.460 allows remote attackers to obtain valid user session tokens from localStorage, leading to account takeover
- Vendors
- alteryx
- Products
- alteryx server
- Weakness
- CWE-922
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.