Jun 14th 2023


Access and login to the demo website:

Press F12 on your keyboard or right-click on the website to open dev-tool.

At Application tab, choose Cookies and there are some sensitive cookies without Secure flag. (CookieAuth, csrfToken)

Proof of Concept

Link image evidence:


If the secure flag is not set, then the cookie will be transmitted in clear-text if the user visits any HTTP URLs within the cookie's scope.

An attacker may be able to induce this event by feeding a user suitable links, either directly or via another web site.

it-novum/openitcockpit maintainer validated this vulnerability 8 months ago

Hi Chuu, many thanks for contacting us. We can confirm that it would be good to only cookies with secure HTTPS connections. We have created a patch, which will resolve the issue and enables the secure flag for all our cookies.

Thanks again for contacting us to keep openITCOCKPIT secure. We appreciate this!

it-novum/openitcockpit maintainer marked this as fixed in 4.6.6 with commit 6c717f 8 months ago
@ maintainer Thank you too.

This vulnerability has now been published 7 months ago
