CVE-2025-4754
Severity CVSS v4.0:
LOW
Type:
Unavailable / Other
Publication date:
17/06/2025
Last modified:
04/07/2025
Description
Insufficient Session Expiration vulnerability in ash-project ash_authentication_phoenix allows Session Hijacking. This vulnerability is associated with program files lib/ash_authentication_phoenix/controller.ex.<br />
<br />
This issue affects ash_authentication_phoenix until 2.10.0.
Impact
Base Score 4.0
2.30
Severity 4.0
LOW