
🔴 CKAN, SQL Injection, #CVE-2024-38821 (Critical) https://dailycve.com/ckan-sql-injection-cve-2024-38821-critical/
Post summary
A critical SQL injection vulnerability (CVE-2024-38821) affecting CKAN has been disclosed.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
Spring WebFlux applications that have Spring Security authorization rules on static resources can be bypassed under certain circumstances. For this to impact an application, all of the following must be true: * It must be a WebFlux application * It must be using Spring's static resources support * It must have a non-permitAll authorization rule applied to the static resources support
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
NONE

🔴 CKAN, SQL Injection, #CVE-2024-38821 (Critical) https://dailycve.com/ckan-sql-injection-cve-2024-38821-critical/
Post summary
A critical SQL injection vulnerability (CVE-2024-38821) affecting CKAN has been disclosed.