CVE-2024-52311 - Amazon Cognito Unauthorized Token Persistence

2 weeks ago 9
ARTICLE AD BOX
CVE ID : CVE-2024-52311
Published : Nov. 9, 2024, 1:15 a.m. | 24 minutes ago
Description : Authentication tokens issued via Cognito in data.all are not invalidated on log out, allowing for previously authenticated user to continue execution of authorized API Requests until token is expired.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article