Insecure Permissions vulnerability in the Local Storage in Alteryx Server 2023.1.1.460 allows remote attackers to obtain valid user session tokens from localStorage, leading to account takeover
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://alteryx.com | Product |
https://gist.github.com/DylanGrl/2771afe86bdd2665b83f28c1ff5c12eb | Exploit Third Party Advisory Mitigation |
Configurations
History
17 Jul 2025, 00:57
Type | Values Removed | Values Added |
---|---|---|
First Time |
Alteryx
Alteryx alteryx Server |
|
CPE | cpe:2.3:a:alteryx:alteryx_server:2023.1.1.460:*:*:*:*:*:*:* | |
References | () https://gist.github.com/DylanGrl/2771afe86bdd2665b83f28c1ff5c12eb - Exploit, Third Party Advisory, Mitigation | |
References | () https://alteryx.com - Product |
10 Jul 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-10 19:15
Updated : 2025-07-17 00:57
NVD link : CVE-2025-28244
Mitre link : CVE-2025-28244
JSON object : View
Products Affected
alteryx
- alteryx_server
CWE
No CWE.