Логотип exploitDog
bind:CVE-2024-9447
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-9447

Количество 2

Количество 2

nvd логотип

CVE-2024-9447

11 месяцев назад

An information disclosure vulnerability exists in the latest version of transformeroptimus/superagi. The `/get/organisation/` endpoint does not verify the user's organization, allowing any authenticated user to retrieve sensitive configuration details, including API keys, of any organization. This could lead to unauthorized access to services and significant data breaches or financial loss.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-f2v6-7vxr-j9g8

11 месяцев назад

An information disclosure vulnerability exists in the latest version of transformeroptimus/superagi. The `/get/organisation/` endpoint does not verify the user's organization, allowing any authenticated user to retrieve sensitive configuration details, including API keys, of any organization. This could lead to unauthorized access to services and significant data breaches or financial loss.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-9447

An information disclosure vulnerability exists in the latest version of transformeroptimus/superagi. The `/get/organisation/` endpoint does not verify the user's organization, allowing any authenticated user to retrieve sensitive configuration details, including API keys, of any organization. This could lead to unauthorized access to services and significant data breaches or financial loss.

CVSS3: 6.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-f2v6-7vxr-j9g8

An information disclosure vulnerability exists in the latest version of transformeroptimus/superagi. The `/get/organisation/` endpoint does not verify the user's organization, allowing any authenticated user to retrieve sensitive configuration details, including API keys, of any organization. This could lead to unauthorized access to services and significant data breaches or financial loss.

CVSS3: 6.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу