CVE-2024-7952: DataEdgePlatform DataMosaix™ Private Cloud
Published Sep 1, 2026
·Updated
A data exposure vulnerability exists in the affected product. There are hardcoded links in the source code that lead to JSON files that can be reached without authentication. If exploited, a threat actor could view customer data.
Affected Software
1 affected component
DataEdgePlatform DataMosaix Private Cloud
Event History
Sep 1, 2026
CVE Published
via MITRE·05:33 PM
Data Sourced
via MITRE·05:33 PM
Description
Frequently Asked Questions
1
Is authentication required to access the exposed resources?
No. The referenced JSON files can be reached without authentication through hardcoded links in the source code.
2
What information could be exposed?
A threat actor could view customer data if the issue is exploited.