CVE-2024-38827
ADVISORY - githubSummary
The usage of String.toLowerCase() and String.toUpperCase() has some Locale dependent exceptions that could potentially result in authorization rules not working properly.
EPSS Score: 0.00377 (0.294)
Common Weakness Enumeration (CWE)
ADVISORY - nist
Authorization Bypass Through User-Controlled Key
ADVISORY - github
Authorization Bypass Through User-Controlled Key
ADVISORY - gitlab
ADVISORY - redhat
Authorization Bypass Through User-Controlled Key
NIST
CREATED
UPDATED
ADVISORY IDCVE-2024-38827
EXPLOITABILITY SCORE
2.2
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
4.8mediumGitHub
CREATED
UPDATED
ADVISORY IDGHSA-q3v6-hm2v-pw99
EXPLOITABILITY SCORE
2.2
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
6.3mediumRed Hat
CREATED
UPDATED
ADVISORY IDCVE-2024-38827
EXPLOITABILITY SCORE
2.2
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
4.8mediumChainguard
CREATED
UPDATED
ADVISORY ID
CGA-55pg-pmr2-7vrj
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
Chainguard
CREATED
UPDATED
ADVISORY ID
CGA-624w-2cv9-27cj
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
Chainguard
CREATED
UPDATED
ADVISORY ID
CGA-73cf-v939-5pqr
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-