CVE-2024-50644

zhisheng17 blog 3.0.1-SNAPSHOT has an authentication bypass vulnerability. An attacker can exploit this vulnerability to access API without any token.
Configurations

No configuration.

History

26 Aug 2025, 14:15

Type Values Removed Values Added
CWE CWE-287
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References () https://gitee.com/fushuling/cve/blob/master/CVE-2024-50644.md - () https://gitee.com/fushuling/cve/blob/master/CVE-2024-50644.md -
References () https://github.com/zhisheng17/blog/issues/64 - () https://github.com/zhisheng17/blog/issues/64 -
Summary
  • (es) zhisheng17 blog 3.0.1-SNAPSHOT presenta una vulnerabilidad de omisión de autenticación. Un atacante puede explotar esta vulnerabilidad para acceder a la API sin token.

22 Aug 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-22 17:15

Updated : 2025-08-26 14:15


NVD link : CVE-2024-50644

Mitre link : CVE-2024-50644

CVE.ORG link : CVE-2024-50644


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication