VDB
CVE-2024-21891
CVE-2024-21891
PUBLISHED
EPSS 0.23% · 46.7th percentile
Risk Scores
EPSS Score
0.23%
46.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amazon | nodejs20 |
Exploit Intelligence
- Multiple permission model bypasses due to improper path traversal sequence sanitization (hackerone)
- Multiple permission model bypasses due to improper path traversal sequence sanitization (hackerone)
- Multiple permission model bypasses due to improper path traversal sequence sanitization (hackerone)
- https://hackerone.com/reports/2259914 (osv)
- GenerationConfig.java (github-poc)
- SelfAdaptationGenerationConfig.java (github-poc)
- GenerationConfig.java (github-poc)
- GenerationConfig.java (github-poc)
- GenerationConfig.java (github-poc)
- GenerationConfig.java (github-poc)
…and 18 more exploits
Timeline
- CVE Published
- Feb 15, 2024 PoC Published
- Feb 20, 2024 EPSS Score
- Mar 18, 2024 EPSS Score
- Apr 14, 2024 EPSS Score
- May 10, 2024 EPSS Score
- Jun 7, 2024 EPSS Score
- Jul 4, 2024 EPSS Score
- Jul 31, 2024 EPSS Score
- Aug 27, 2024 EPSS Score
- Sep 23, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score