CVE-2024-2796: SSRF in Akana API Platform
Published Apr 18, 2024
·Updated
A server-side request forgery (SSRF) was discovered in the Akana API Platform in versions prior to and including 2022.1.3. Reported by Jakob Antonsson.
Affected Software
1 affected component
Akana API Platform<=2022.1.3
Event History
Apr 18, 2024
CVE Published
via MITRE·03:04 PM
Data Sourced
via MITRE·03:04 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-2796?
CVE-2024-2796 is classified as a server-side request forgery (SSRF) vulnerability which can lead to serious security implications.
2
How do I fix CVE-2024-2796?
To remediate CVE-2024-2796, update the Akana API Platform to version 2022.1.4 or later.
3
What versions are affected by CVE-2024-2796?
CVE-2024-2796 affects all versions of the Akana API Platform up to and including 2022.1.3.
4
Who reported CVE-2024-2796?
CVE-2024-2796 was reported by Jakob Antonsson.
5
What type of vulnerability is CVE-2024-2796?
CVE-2024-2796 is a server-side request forgery (SSRF) vulnerability.