Логотип exploitDog
bind:CVE-2024-56362
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-56362

Количество 3

Количество 3

nvd логотип

CVE-2024-56362

8 месяцев назад

Navidrome is an open source web-based music collection server and streamer. Navidrome stores the JWT secret in plaintext in the navidrome.db database file under the property table. This practice introduces a security risk because anyone with access to the database file can retrieve the secret. This vulnerability is fixed in 0.54.1.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xwx7-p63r-2rj8

8 месяцев назад

Navidrome Stores JWT Secret in Plaintext in navidrome.db

CVSS3: 7.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0060-1

7 месяцев назад

Security update for govulncheck-vulndb

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-56362

Navidrome is an open source web-based music collection server and streamer. Navidrome stores the JWT secret in plaintext in the navidrome.db database file under the property table. This practice introduces a security risk because anyone with access to the database file can retrieve the secret. This vulnerability is fixed in 0.54.1.

CVSS3: 7.1
0%
Низкий
8 месяцев назад
github логотип
GHSA-xwx7-p63r-2rj8

Navidrome Stores JWT Secret in Plaintext in navidrome.db

CVSS3: 7.1
0%
Низкий
8 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0060-1

Security update for govulncheck-vulndb

7 месяцев назад

Уязвимостей на страницу