Aqua Vulnerability Database
Get Demo
Vulnerabilities
Misconfiguration
Runtime Security
Compliance
CVE Vulnerabilities
CVE-2024-28435
Published:
Mar 25, 2024
| Modified:
Mar 25, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
Additional information
NVD
https://nvd.nist.gov/vuln/detail/CVE-2024-28435
CWE
https://cwe.mitre.org/data/definitions/.html
The CRM platform Twenty version 0.3.0 is vulnerable to SSRF via file upload.
References
https://github.com/b-hermes/vulnerability-research/tree/main/CVE-2024-28435
https://github.com/twentyhq/twenty
Aqua Container Security