CVE-2024-43376
CVSS V2 None
CVSS V3 None
Description
Umbraco is an ASP.NET CMS. Some endpoints in the Management API can return stack trace information, even when Umbraco is not in debug mode. This vulnerability is fixed in 14.1.2.
Overview
- CVE ID
- CVE-2024-43376
- Assigner
- GitHub_M
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-08-20T14:40:20.338Z
- Last Modified Date
- 2024-08-20T17:40:07.164Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-77gj-crhp-3gvx | x_refsource_CONFIRM |
https://github.com/umbraco/Umbraco-CMS/commit/b76070c794925932cb159ef50b851db6e966a004 | x_refsource_MISC |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-43376 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-43376 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-08-21 13:19:07 | Added to TrackCVE |