CVE-2024-9431: Improper Privilege Management in transformeroptimus/superagi
In version v0.0.14 of transformeroptimus/superagi, there is an improper privilege management vulnerability. After logging into the system, users can change the passwords of other users, leading to potential account takeover.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9431?
CVE-2024-9431 is classified as a high severity vulnerability due to the risk of account takeover.
How do I fix CVE-2024-9431?
To fix CVE-2024-9431, update to the latest version of transformeroptimus/superagi where the improper privilege management issue is resolved.
What versions of transformeroptimus/superagi are affected by CVE-2024-9431?
CVE-2024-9431 affects version v0.0.14 of transformeroptimus/superagi.
What type of vulnerability is CVE-2024-9431?
CVE-2024-9431 is an improper privilege management vulnerability that allows users to change other users' passwords.
What can happen if CVE-2024-9431 is exploited?
Exploiting CVE-2024-9431 can lead to unauthorized account access and potential takeover by malicious users.