CVE-2024-43784 PUBLISHED CVSS 5.699999809265137 MEDIUM

Re-creating a deleted user in lakeFS will re-enable previous user credentials that existed prior to its deletion

EPSS 0.03% · 7.6th percentile

Risk Scores

CVSS v3.1
5.699999809265137
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:H/A:L
EPSS Score
0.03%
7.6th percentile

Affected Products

VendorProductVersions
treeverselakeFS>= 1.31.1, < 1.33.0, >= 1.31.1, < 1.33.0
github.comtreeverse/lakefs0, 0

Timeline

References

Open in Interactive Console →