VDB

GCVE-110-CLOUD-2024-0007

GCVE-110-CLOUD-2024-0007
Advisory Published
Vulnetix · Advisory published November 8, 2024
Multiple security vulnerabilities were identified in data.all, an open source development framework for building data marketplaces on AWS. The issues affect versions 1.0.0 through 2.6.0 and include problems with authentication token invalidation, unauthorized operations on DataSets and Environments, incorrect object-level authorizations, potential access to sensitive data via logs, and unauthorized mutating update operations on notification records.

Affected Products

VendorProductVersionsPlatforms
AWSdata.all
AWSRDS

References

advisory

Browse GCVE Records

74,132 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›