CVE-2024-24759 - MindsDB Server-Side Request Forgery (SSRF) and Denial of Service (DoS)

2 months ago 33
ARTICLE AD BOX
CVE ID : CVE-2024-24759
Published : Sept. 5, 2024, 5:15 p.m. | 24 minutes ago
Description : MindsDB is a platform for building artificial intelligence from enterprise data. Prior to version 23.12.4.2, a threat actor can bypass the server-side request forgery protection on the whole website with DNS Rebinding. The vulnerability can also lead to denial of service. Version 23.12.4.2 contains a patch.
Severity: 9.3 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article