CVE-2023-2138

Use of Hard-coded Credentials in GitHub repository nuxtlabs/github-module prior to 1.6.2.
Configurations

Configuration 1 (hide)

cpe:2.3:a:nuxtlabs:nuxt:*:*:*:*:*:*:*:*

History

27 Apr 2023, 19:46

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:nuxtlabs:nuxt:*:*:*:*:*:*:*:*
References (MISC) https://github.com/nuxtlabs/github-module/commit/5490c43f729eee60f07920bf88c0aabdc1398b6e - (MISC) https://github.com/nuxtlabs/github-module/commit/5490c43f729eee60f07920bf88c0aabdc1398b6e - Patch
References (CONFIRM) https://huntr.dev/bounties/65096ef9-eafc-49da-b49a-5b88c0203ca6 - (CONFIRM) https://huntr.dev/bounties/65096ef9-eafc-49da-b49a-5b88c0203ca6 - Permissions Required, Third Party Advisory

18 Apr 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-18 01:15

Updated : 2024-02-04 23:37


NVD link : CVE-2023-2138

Mitre link : CVE-2023-2138

CVE.ORG link : CVE-2023-2138


JSON object : View

Products Affected

nuxtlabs

  • nuxt
CWE
CWE-798

Use of Hard-coded Credentials