A vulnerability classified as
critical has been found in
F5 NGINX OpenID Connect, NGINX Instance Manager, NGINX API Connectivity Manager and NGINX Ingress Controller. This affects an unknown part. The manipulation leads to session fixiation.
This vulnerability is uniquely identified as
CVE-2024-10318. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.