Web-Sesame Source Code Disclosure Vulnerability

Vulnerability

A vulnerability in Web-Sesame version 2020.1.1.3375 allows an unauthenticated attacker to download the application's source code. This issue arises from a misconfiguration that left JavaScript source maps accessible in the production Webpack setup. These source maps can reveal the original sources used to create the bundled files, including sensitive information such as API keys and developers' comments.

Impact

Exploitation of this vulnerability leads to unauthorized access to the application's source code, including sensitive information like API keys and developer comments.

Added: Jun 22, 2026, 11:23 AM
Updated: Jun 22, 2026, 11:23 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
6.0
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.