The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for libsoup
.
Affected versions of this package are vulnerable to Use of Cache Containing Sensitive Information via improper validation of HTTP Vary
header in SoupCache caching mechanism. An attacker can access confidential information by retrieving cached HTTP responses intended for other users.
Note:
This is only relevant to applications that explicitly enable SoupCache, and exploitation is more plausible in proxy-like scenarios rather than standard GNOME desktop use cases.