Description
An issue was discovered in blinksocks version 3.3.8, allows remote attackers to obtain sensitive information via weak encryption algorithms in the component /presets/ssr-auth-chain.js.
Remediation
References
https://github.com/blinksocks/blinksocks/issues/108
https://github.com/tianjk99/Cryptographic-Misuses/blob/main/CVE-2023-50481.md
Related Vulnerabilities
CVE-2023-1370 Vulnerability in maven package net.minidev:json-smart
CVE-2023-33202 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on
CVE-2020-2250 Vulnerability in maven package org.jenkins-ci.plugins:soapui-pro-functional-testing
CVE-2020-27218 Vulnerability in maven package org.eclipse.jetty:jetty-server
CVE-2020-7707 Vulnerability in maven package org.webjars.npm:property-expr