Логотип exploitDog
bind:CVE-2024-31217
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-31217

Количество 2

Количество 2

nvd логотип

CVE-2024-31217

больше 1 года назад

Strapi is an open-source content management system. Prior to version 4.22.0, a denial-of-service vulnerability is present in the media upload process causing the server to crash without restarting, affecting either development and production environments. Usually, errors in the application cause it to log the error and keep it running for other clients. This behavior, in contrast, stops the server execution, making it unavailable for any clients until it's manually restarted. Any user with access to the file upload functionality is able to exploit this vulnerability, affecting applications running in both development mode and production mode as well. Users should upgrade @strapi/plugin-upload to version 4.22.0 to receive a patch.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-pm9q-xj9p-96pm

больше 1 года назад

@strapi/plugin-upload has a Denial-of-Service via Improper Exception Handling

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-31217

Strapi is an open-source content management system. Prior to version 4.22.0, a denial-of-service vulnerability is present in the media upload process causing the server to crash without restarting, affecting either development and production environments. Usually, errors in the application cause it to log the error and keep it running for other clients. This behavior, in contrast, stops the server execution, making it unavailable for any clients until it's manually restarted. Any user with access to the file upload functionality is able to exploit this vulnerability, affecting applications running in both development mode and production mode as well. Users should upgrade @strapi/plugin-upload to version 4.22.0 to receive a patch.

CVSS3: 5.3
2%
Низкий
больше 1 года назад
github логотип
GHSA-pm9q-xj9p-96pm

@strapi/plugin-upload has a Denial-of-Service via Improper Exception Handling

CVSS3: 5.3
2%
Низкий
больше 1 года назад

Уязвимостей на страницу