connx vulnerabilities
CVEs whose affected-version data names the connx package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2021-40650Medium· 6.5In Connx Version 6.2.0.1269 (20210623), a cookie can be issued by the application and not have the secure flag set.
In Connx Version 6.2.0.1269 (20210623), a cookie can be issued by the application and not have the secure flag set.
▾ Sunlitsoftwareag · connxEPSS 0.77%via NVD
CVE-2021-40649Medium· 6.5In Connx Version 6.2.0.1269 (20210623), a cookie can be issued by the application and not have the HttpOnly flag set.
In Connx Version 6.2.0.1269 (20210623), a cookie can be issued by the application and not have the HttpOnly flag set.
▾ Sunlitsoftwareag · connxEPSS 0.82%via NVD