TROYANOSYVIRUS
Voltar para CVEs

CVE-2024-8024

N/A

Descricao

A CORS misconfiguration vulnerability exists in netease-youdao/qanything version 1.4.1. This vulnerability allows an attacker to bypass the Same-Origin Policy, potentially leading to sensitive information exposure. Properly implementing a restrictive CORS policy is crucial to prevent such security issues.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado3/20/2025
Ultima modificacao8/1/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

youdao:qanything

Fraquezas (CWE)

CWE-346

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.