logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-47531

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-47531

Description:
Scout is a web-based visualizer for VCF-files. Due to the lack of sanitization in the filename, it is possible bypass intended file extension and make users download malicious files with any extension. With malicious content injected inside the file data and users unknowingly downloading it and opening may lead to the compromise of users' devices or data. This vulnerability is fixed in 4.89.
Last updated date:
11/15/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
11/15/2024
Reference url to background

https://github.com/Clinical-Genomics/scout/security/advisories/GHSA-24xv-q29v-3h6r

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy