AUGUST 5, 2026
Live Feed
Back to database
Case File

CVE-2024-38806

LOW · CVSS 3.9 EPSS 0.13%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-07-18 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.9. It affects GitHub.

CVE
CVE-2024-38806
Severity
LOW
CVSS
3.9
EPSS
0.13%
GitHub

Original NVD Description

Failure to properly synchronize user's permissions in UAA in Cloud Foundry Foundation v40.17.0 https://github.com/cloudfoundry/cf-deployment/releases/tag/v40.17.0 , potentially resulting in users retaining access rights they should not have. This can allow them to perform operations beyond their intended permissions.