ToolJet - Token Leakage via Referer Header
CVE-2022-23067

8.8HIGH

Key Information:

Vendor

Tooljet

Status
Vendor
CVE Published:
18 May 2022

What is CVE-2022-23067?

ToolJet versions v0.5.0 to v1.2.2 are vulnerable to token leakage via Referer header that leads to account takeover . If the user opens the invite link/signup link and then clicks on any external links within the page, it leaks the password set token/signup token in the referer header. Using these tokens the attacker can access the user’s account.

Affected Version(s)

ToolJet 0.5.0

ToolJet <= 1.2.2

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

WhiteSource Vulnerability Research Team (WVR)
.