CVE-2024-51127

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-51127
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-51127.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-51127
Aliases
Published
2024-11-04T18:15:05Z
Modified
2025-04-27T03:28:22.736104Z
Downstream
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
Summary
[none]
Details

An issue in the createTempFile method of hornetq v2.4.9 allows attackers to arbitrarily overwrite files or access sensitive information.

References

Affected packages

Git / github.com/hornetq/hornetq

Affected ranges

Type
GIT
Repo
https://github.com/hornetq/hornetq
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

Other

HornetQ_2_3_0_Alpha
HornetQ_2_3_0_Beta1
HornetQ_2_3_0_Beta2
HornetQ_2_3_0_Beta3
HornetQ_2_3_0_CR1
HornetQ_2_3_0_CR2
HornetQ_2_3_0_FINAL
HornetQ_2_4_0_Alpha1
HornetQ_2_4_0_Beta1
HornetQ_2_4_0_Beta2
HornetQ_2_4_0_Beta3
HornetQ_2_4_0_Final
HornetQ_2_4_1_Final
HornetQ_2_4_2_Final
HornetQ_2_4_3_Final
HornetQ_2_4_4_Final
HornetQ_2_4_5_Final
HornetQ_2_4_6_Final
HornetQ_2_4_7_Final
HornetQ_2_4_8_Final
HornetQ_2_4_9_Final