ZeroHour

CVE-2025-28244

PoC
CVSS 3.1
8.8 high
EPSS
<1%p38
Published
()
Modified
Description

Insecure Permissions vulnerability in the Local Storage in Alteryx Server 2023.1.1.460 allows remote attackers to obtain valid user session tokens from localStorage, leading to account takeover

Vendors
alteryx
Products
alteryx server
Weakness
CWE-922
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.