VYPR

Nakama

by Heroiclabs

CVEs (2)

  • CVE-2022-2321CriJul 5, 2022
    risk 0.57cvss 9.8epss 0.01

    Improper Restriction of Excessive Authentication Attempts in GitHub repository heroiclabs/nakama prior to 3.13.0. This results in login brute-force attacks.

  • CVE-2022-2306HigJul 5, 2022
    risk 0.42cvss 7.5epss 0.01

    Old session tokens can be used to authenticate to the application and send authenticated requests.