A vulnerability was found in web-auth webauthn-framework up to 4.8.x. It has been declared as problematic. Affected by this vulnerability is the function
ProfileBasedRequestOptionsBuilder
. The manipulation leads to observable response discrepancy.
This vulnerability is known as CVE-2024-39912. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.