An issue was discovered in Overhang.IO (tutor-open-edx) (overhangio/tutor) 20.0.2 allowing local unauthorized attackers to gain access to sensitive information due to the absence of proper cache-control HTTP headers and client-side session checks.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| tutor(PyPI) | 0 | N/A | N/A |
CVSS Metrics