In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Insufficient Session Expiration vulnerabilities in an interactive lesson.
Start learningUpgrade github.com/gravitational/teleport/lib/authz
to version 13.4.26, 14.3.20, 15.3.6 or higher.
Affected versions of this package are vulnerable to Insufficient Session Expiration due to not terminating some long-running mTLS-authenticated connections past the expiry of client certificates for users with the disconnect_expired_cert
option. This could allow such users to perform some API actions after their certificate has expired.