Description
An issue was discovered in blinksocks version 3.3.8, allows remote attackers to obtain sensitive information via weak encryption algorithms in the component /presets/ssr-auth-chain.js.
Remediation
References
https://github.com/blinksocks/blinksocks/issues/108
https://github.com/tianjk99/Cryptographic-Misuses/blob/main/CVE-2023-50481.md
Related Vulnerabilities
CVE-2022-31110 Vulnerability in npm package rsshub
CVE-2023-26049 Vulnerability in maven package org.eclipse.jetty:jetty-http
CVE-2023-33008 Vulnerability in maven package org.apache.johnzon:johnzon
CVE-2016-7103 Vulnerability in maven package org.webjars.npm:jquery-ui
CVE-2022-24717 Vulnerability in npm package @finastra/ssr-pages