CVE-2024-45597

CVSS V2 None CVSS V3 None
Description
Pluto is a superset of Lua 5.4 with a focus on general-purpose programming. Scripts passing user-controlled values to http.request header values are affected. An attacker could use this to send arbitrary requests, potentially leveraging authentication tokens provided in the same headers table.
Overview
  • CVE ID
  • CVE-2024-45597
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-09-10T21:42:47.530Z
  • Last Modified Date
  • 2024-09-10T21:42:47.530Z
References
History
Created Old Value New Value Data Type Notes
2024-09-11 13:12:35 Added to TrackCVE