First published: Sun Sep 22 2024(Updated: )
An issue was discovered in vesoft NebulaGraph through 3.8.0. It allows bypassing authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NebulaGraph | <=3.8.0 | |
NebulaGraph | <=3.8.0 |
https://github.com/vesoft-inc/nebula/pull/5936/commits/cd6c5976ccfe817b2e0a2d46227cd361bfefb45c
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-47218 is considered critical due to the potential for unauthorized access.
To fix CVE-2024-47218, upgrade vesoft NebulaGraph to version 3.8.1 or later.
CVE-2024-47218 affects vesoft NebulaGraph up to and including version 3.8.0.
CVE-2024-47218 is an authentication bypass vulnerability.
Yes, CVE-2024-47218 can be exploited remotely, allowing attackers to bypass authentication.