Umbraco CMS logout page displayed before session expiration
Moderate severity
GitHub Reviewed
Published
Oct 22, 2024
in
umbraco/Umbraco-CMS
•
Updated Oct 23, 2024
Description
Published by the National Vulnerability Database
Oct 22, 2024
Published to the GitHub Advisory Database
Oct 22, 2024
Reviewed
Oct 22, 2024
Last updated
Oct 23, 2024
Impact
The Backoffice displays the logout page with a session timeout message before the server session has fully expired, causing users to believe they have been logged out approximately 30 seconds before they actually are.
References